04-07-2023 07:55 AM
Hey guys,
I just finished the setup with help of the documentation https://duo.com/docs/azure-ca
Everything seems fine but somehow I dont get the DUO prompt when I log in to Azure, which actually should. Every step was taken as described but I think I missing somethin. Any idea?
thank you
04-07-2023 12:50 PM
Double-check the conditional access policy assignments in Azure:
Try the “What If” tool in the Azure portal to model an auth that you think should be subject to the CA policy with the Duo control and see what happens i.e. does your Duo CA policy show up in “Policies that will apply”?
If Duo works in the browser but isn’t shown in a rich-client app, take a look at this article for more advice: How often will rich and mobile clients such as Outlook, Skype for Business and iOS Mail prompt for authentication with Azure’s Authentication Session Management feature?.
04-10-2023 10:06 PM
Hi Kristina,
thank you for your quick response. I actually did everything double-check. Do you know how to set the Userlogin on the Azure AD Connect Server? Is it Password-Passthrough or Federation with ADFS?
04-11-2023 06:10 AM
That choice is up to you. What do you want your deployment to look like? Do you want to federate your Azure tenant with AD FS for primary? If you don’t plan to deploy AD FS, don’t choose it.
04-11-2023 09:36 AM
That was a thought for the future and would be nice to federate my tenant with AD FS.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide