venth / aws-adfs

Command line tool to ease aws cli authentication against ADFS (multi factor authentication with active directory)
MIT License
286 stars 99 forks source link

Error: Cannot begin authentication process. The error response: {"stat": "FAIL", "message_enum": 57, "data": {}} #411

Closed william-mcdaniels closed 9 months ago

william-mcdaniels commented 9 months ago

Getting this error after things were working fine a few days ago with the universal prompt and latest version. Just trying to get more info on what might be needed on our side since the aws-adfs likely hasn't changed in a few days since last upgrade.

duo universal prompt was deployed last week and an aws-adfs update fixed the client side until today suddenly.

william-mcdaniels commented 9 months ago

Apparently the most recent change was Duo adapter for ADFS - upgraded to adfs3-2.0.0 from adfs3-1.1.1.16. Happened last night.

stryke commented 9 months ago

I began seeing the same issue at UCSF this morning. I don't know any details about what specifically was upgraded, other than "Duo will upgrade to 'Duo Universal Prompt'” per the email that IT sent out today entitled "Today’s the Day: New Process for Duo Multi-Factor Authentication."

william-mcdaniels commented 9 months ago

Now the error has evolved to this one following the Universal prompt update:

Error: Cannot begin authentication process. The error response: {"stat": "FAIL", "message_enum": 57, "data": {}}