ADFS Device Registration cross forest

Peter Holland

Hi all,


is it possible to do device registration (and claims) across a forest trust?


it looks to me like it isnt possible due to the limitation of the Enable-AdfsDeviceRegistration -DeviceLocation command being "a domain within the same forest"


is there any other way to make this work cross forest? or is this a scenario for additional ADFS farms or moving to Azure AD registration and authentication?

(tagged ADFS 2016, its actually 2012 R2)




1 Reply

Hi Peter,


Not sure if you found the answer to your question; basically registered devices are stored in a single location - which is the one you specify for -DeviceLocation.

This should not impact your cross-forest scenario. Unfortunately, as always with everything ADFS, documentation on not-too-standard deployments is thin...





Related Conversations
Tabs and Dark Mode
cjc2112 in Discussions on
50 Replies
Extentions Synchronization
Deleted in Discussions on
3 Replies
Stable version of Edge insider browser
HotCakeX in Discussions on
35 Replies
How to Prevent Teams from Auto-Launch
chenrylee in Microsoft Teams on
32 Replies
Security Community Webinars
Valon_Kolica in Security, Privacy & Compliance on
15 Replies
Dev channel update to 80.0.355.1 is live
josh_bodner in Discussions on
67 Replies