Forum Discussion
Matt Karel
Oct 25, 2016Brass Contributor
ADFS Per Relaying Party Authentication Method
As we look to deploy ADFS 3.0 or maybe even 4.0 (Server 2016) I was wondering if for internal clients if we can configure a RP to use FBA insted of the global setting of IWA for internal clients. Th...
Chris Brown
Oct 25, 2016Iron Contributor
The FBA/WIA decision is made before the relying party name can be determined. That is to say, you can't specify an authentication method based on relying party.
I've seen https://blog.kloud.com.au/2014/11/06/implementing-adfs-v3-0-forms-authentication-in-mixed-environments/ from Kloud implemented with much success in the past, and I reckon it might be just what you need.
https://blog.kloud.com.au/2014/11/06/implementing-adfs-v3-0-forms-authentication-in-mixed-environments/
In the post above, where it refers to BYOD, you should read that to be your generic workstations.