Forum Discussion
kpsingh
Dec 09, 2020Copper Contributor
Multiple federated accounts cannot login to Outlook Desktop
Environment: AD FS on-prem Exchange Online Hybrid Client: Domain bound Windows 10 Office 2016 On client machine, user is setup with his mailbox in Outlook. User also requires to add add...
kpsingh
Dec 10, 2020Copper Contributor
- ADFS IDP URL is added under Trusted sites in IE and controlled by system admin through group policy.
- ADFS IDP URL being in Trusted sites makes user to auto-login to this site using his AD Account login to PC
- Credential Manager do not have any entry for new account I'm trying to add
- I shutdown Outlook
- Opened Mail app from control panel > added email and password
- Then I see prompt of modern authentication for about 2-3 seconds and then it disappears
- Config wizard says "Congratulations! Your email account was successfully configured and is ready to use."
- I closed wizard, opened Outlook.
- Now, I continuously see modern authentication prompt appear/disappear
- Newly mailbox is collapsed and when I try to expand it, I see following message:
So, the issue still persists. I think when I try to add new account, it redirects to Microsoft modern authentication prompt. Microsoft authentication prompts figures that this domain is federated and it redirects to our ADFS for authentication. On ADFS, previous user is already signed in so based on single-sign-on concept, it uses current session and pass token to Microsoft. Now, Microsoft was expecting token for a new account but it received for the existing mailbox and hence we cannot authenticate to new account.
Pontus Själander
Dec 10, 2020Iron Contributor
I see what you mean. If you create a whole new profile, and add the new account, same issue?
Just for making sure that there isn't any "local" issues with the device/office installation I would have added those accounts on a new VM that is 100% patched and see if you have the same result
Just for making sure that there isn't any "local" issues with the device/office installation I would have added those accounts on a new VM that is 100% patched and see if you have the same result
- kpsinghDec 10, 2020Copper Contributor
Same issue with fresh new profile as well.
There is no local issue on machine. This is a citrix environment and we have tested this on 2 different citrix machines as well and behavior is same everywhere.
- Pontus SjälanderDec 16, 2020Iron Contributor
kpsingh Any progress?
- Pontus SjälanderDec 10, 2020Iron ContributorAlright, that's good!
Next step for me, would be to do exactly the same thing on another user, just for trying to locate the issue. Might be some old attributes/autodiscover functions that is causing the issue on one of those specific accounts you are currently working with