Forum Discussion

jrngsg's avatar
jrngsg
Iron Contributor
Jan 28, 2021

azure federated managed apple id verification prompt frequently

 

i am using azure federated managed apple id to sign in icloud. once every few days, i will get apple id verification prompt to authenticate. is this normal? 

  • Pablomcse's avatar
    Pablomcse
    Brass Contributor
    Hi @jrng89, good morning. Federated authentication requires that a user’s User Principal Name (UPN) match their email address. User Principal Name aliases and Alternate IDs are not supported. To use federated authentication with Apple School Manager, your Apple devices must meet the following requirements: iOS 11.3 or later iPadOS 13.1 or later macOS 10.13.4 or later. Check your federation services logs and see where is the problem it should be my first option. Here you have more info about Federation services with Apple ids. https://support.apple.com/en-ie/guide/apple-school-manager/apdb19317543/web I hope this can help. Good luck!
  • jackfirth's avatar
    jackfirth
    Copper Contributor

    Hey!! Did you find a fix, i have exactly the same issue while using federated authentication. 

    • jrngsg's avatar
      jrngsg
      Iron Contributor
      All vpp apps are deployed as device based license
      • Bruce Roberts's avatar
        Bruce Roberts
        Copper Contributor

        jrngsgwe are having a similar problem - most recently this has gotten more frequent. We are an ABM federated domain, we allow users to remember MFA authentication for X days.
        Some troubleshooting we are just now trying is to check and confirm the authenticator app is logged in and working for the user and also for intune company portal app having the end user log out and then fully log back in (using their work email/apple federated ID - which are the same). Looking for suggestions to mitigate this end user interuption

  • AlasAlack's avatar
    AlasAlack
    Copper Contributor
    Would Azure Conditional access help or hurt in this scenario. jrngsg, do you use conditional access settings to manage the ABM cloud app?
    • jrngsg's avatar
      jrngsg
      Iron Contributor
      nope, i did not use CA to manage ABM cloud app.
      • AlasAlack's avatar
        AlasAlack
        Copper Contributor

        jrngsg Thanks. Did you eventually get this issue resolved? I'm trying to discover the cause of some relatively frequent Managed Apple ID login prompts for a federated ABM setup. 

    • JuusoH's avatar
      JuusoH
      Copper Contributor
      We are also seeing this issue and it is very frequent for some of the users.
      Has anyone found out the reason for it?

Resources