ahelland / ADFSMFAAdapters

Custom MFA Adapters for ADFS
38 stars 11 forks source link

AD FS event ID 105, YubiKeyMFAAdapter #11

Closed tyleracopeland closed 9 months ago

tyleracopeland commented 9 months ago

First of all, thank you for all the amazing work you have done on this.

I followed the instructions on your blog for configuring ADFS with the YubiKeyMFAAdapter. When I try to test it using the "dummy app" (https://FQDN/adfs/ls/IdpInitiatedSignOn), the only authentication option I am presented with is Forms Authentication. I then disabled Forms Authentication so that the YubiKey MFA Adapter was the only option enabled. After doing that, I get this error message:

image

After restarting the ADFS service, I checked the event logs on the ADFS server and found the following entry logged under ID 105 in the AD FS admin log:

An error occurred loading an authentication provider. Fix configuration errors using PowerShell cmdlets and restart the Federation Service. 
Identifier: YubiKey MFA Adapter 
Context: Proxy device TLS pipeline 

Additional Data 
Exception details: 
An error occurred initializing the 'YubiKey MFA Adapter' authentication provider.

No additional details are provided and this event is generated every time the ADFS service is restarted. Is this something you have encountered before? Do you have any tips or advice you can provide for getting to the root of this issue?

tyleracopeland commented 9 months ago

Never mind. I realized the issue was due to not having installed the adapter on the secondary node in my AD FS farm.