Forum Discussion
need help with SSO with OneDrive for Business
PHS on its own does not provide SSO capabilities. You need to have the Azure AD Connect Seamless SSO feature enabled as detailed for example here: https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-sso
- BanqMarkNov 25, 2019Copper Contributor
VasilMichev Hi Vasil, Thank you for the information. You were correct, the SSO feature was not enabled. I enabled it and I am able to connect directly to my cloud space without any issue (when I open a browser).
However, SSO for Onedrive sync client still does not work. A user still has to login to Onedrive sync client one time in order for it to work. SSO then works for subsequent connections of user logging on.
Could you offer some suggestions on how to resolve this?
This worked perfectly well at the other company that I configured, so there must be one minor configuration parameter that is missing.
Any suggestions / guidance would be greatly appreciated.
Thanks,
BanqMark
- VasilMichevNov 25, 2019MVP
You need to preconfigure the account. Again, documented online: https://docs.microsoft.com/en-us/onedrive/use-group-policy#SilentAccountConfig
The user will still need to select which folders to sync, etc.
- BanqMarkNov 25, 2019Copper Contributor
VasilMichev Hello Vasil,
The GPO is set correctly, but the ODFB sync client does not automatically connect.
Could it be that the device (computer) must be azure ad joined in order for this to work as I would like it to?
We are using password hash for aad sync. The other organization is using federated services and devices were not azure ad joined, but SSO works with ADFB sync client. All I did for them was add sts.domainname.com in site size assignment, local intranet and it worked.