Forum Discussion
Aslam Kader
Aug 16, 2017Copper Contributor
Is it possible to implement captcha on ADFS sing-in form page ?
We have ADFS Proxy servers (Web Application Proxy servers) in our perimeter network and have MFA configured. We also have configured a very strict ADFS Extranet Account Lockout policy (3 bad passwor...
Jason Boroff
Aug 16, 2017Copper Contributor
We are currently experiencing frequent account lockouts from our ADFS servers. We have tracked the offending authentication attemps to other countries. We have tried working with MS portal support, but did not get any where.
We also have adjusted out ADFS Extranet lockout settings to no availe.
We too are wondering about:
- MFA first for external authentication (having it second still allows multiple bad attempts)
- Possible use of CAPTCHA (or something similar)
- Setting some kind of geo-location limits to authentication
Andy David
Aug 16, 2017MVP
If the MFA prompt was before the auth however, end users would be getting endless prompts on their devices. Not sure that is a alternative I would advocate.