ADFS Password Expiration Notification

Iron Contributor

Hey everyone -

 

I am currently using ADFS on Windows 2012 R2 as authentication with my O365 tenant.  I have been asked to enable password expiration notification for end users that access EXO for email via the web.  

 

I did some searching and found 2 articles:

https://blogs.msdn.microsoft.com/samueld/2015/05/13/adfs-2012-r2-now-supports-password-change-not-re...

 

and also

 

https://docs.microsoft.com/en-us/windows-server/identity/ad-fs/operations/configure-ad-fs-to-send-pa...

 

I went through and added the rule mentioned under Trust Relationships --> Relying Party Trusts --> Microsoft Office 365 Identity Platform --> Issuance Transform Rules (added as 3rd rule).

 

Our on prem AD password policy expires passwords after 90 days.  My account PasswordLastSet attribute was 9/26/17, which would put my password at expiring in 5 days or so.

 

After adding this claims rule and logging into EXO via Google Chrome - I would expect to see *something* that says my password expires in 5 days.  Where / when should I see this?  Am I missing something in my configuration?

 

Thanks

Steve

1 Reply

As the article mentions, those notifications are only supported by some applications. Read, Outlook.