-
Notifications
You must be signed in to change notification settings - Fork 54
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Problems starting MMC #101
Comments
First, restart your ADFS server, your service is successfully uninstalled, the problem comes from Windows. |
Yes, there is a problem when the "SuperUser" account is not filled. Regards |
Hi @redhook62 The problem remains the same |
It seems to be an encryption problem. Have you more detailed errors logs (EventLog) You can follow these steps:
Let us know Regards For Uninstall Problems -> version 3.0.2005.2 |
Hi @redhook62 The installation was successful, and now the mmc starts correctly. But now when I try to register using a TOTP code, it seems that the key is invalid : Of course if I scan the code, it is not possible to read it either with Google Auth or Authy. The service account of ADFS is Domain Admin. When I do the uninstall tests, I tell you how it goes. |
first thing, this problem occurs when the access account (Adfs acount or SuperUser account) doesn't have Write permissions on All Properties (eg for All Users), or ADDS Attributes mapping is not functional. As said before, As mentioned above, you can check the ADFS and Application logs, and give us those informations. Regards |
Hi @redhook62 |
OK, As we thought, there is a problem with key encryption. Make sure you have entered the PassPhrase correctly. Please also send us the new logs Regards |
Hi @redhook62 I attach the capture of the event viewer Comment: I never set up the passphrase, ¿should I? |
Hi, What is the lenght of the user UPN ? Regards |
30 characters (including @) |
First of all, we still haven't managed to reproduce your problem. The transmitted trace, put forward an exception on a standard component of the framework (MD5 Hash), supported since version 1.1 of .Net (at the time of the internet bubble ...). In this mode there is no use of specific keys or certificates. If you want to give us more information on your configuration, we can exchange by private email. in this case send us your configuration file, and the user information causing the problem. Regards |
I installed version 3.0.2005.0 and after correctly registering the mfa agent the following problem occurs when starting the mmc :
Another drawback that I could see is that after uninstalling the MFA provider the ADFS service was left in a stopped state. From a service continuity point of view that can be a problem.
The environment where I did the tests is as follows:
AD Domain & Forest version: Windows server 2012 R2
OS: Windows Server 2019
ADFS service account: gMSA with domain admin privileges
Repository : Active Directory
.NET version : 4.8
The text was updated successfully, but these errors were encountered: