k-strider Posted November 20, 2018 Posted November 20, 2018 We have ADFS federated school domain and all our students and teachers are assigned Office 365 ProPlus for faculty/Students license. when a user opens word for the first time it comes up with Sign in to set up office see photo if the user clicks the cross to get rid of the box this happens if the user closes and then reopens word excel etc then it works as normal and gets a shared computer token if the user clicks the sign in it actually asks for there email address and then takes them to our ADFS servers sign in page is there a way to stop this behaviour as clearly from the top right (username) office knows who the user is from the get go - we don't use roaming profiles so if its something that has to just been done once any advice on roaming the tokens with UE-V perhaps? our ADFS server seems to work fine for SSO on other things like signing in to say sharepoint online it just asks for your email address then it knows you are you and signs you straight in.
free780 Posted November 20, 2018 Posted November 20, 2018 (edited) Shared computer activation is what you need. https://docs.microsoft.com/en-us/deployoffice/overview-of-shared-computer-activation-for-office-365-proplus Edited November 20, 2018 by free780
k-strider Posted November 21, 2018 Author Posted November 21, 2018 yes that is how it was set-up i put that line in the config used to deploy it like i said it does get a shared computer token just not on first run - on second run... which is mildly annoying
martindupere Posted May 14, 2019 Posted May 14, 2019 We have the same problem at our SchoolBoard. Any devlopement for you with this problem?
Arcolite Posted May 14, 2019 Posted May 14, 2019 We found ADFS to be inconsistent with SCA. Once we switched to AzureAD Pass-through Authentication we haven't had any further issues (https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-pta).
free780 Posted May 15, 2019 Posted May 15, 2019 I think it's just a speed thing. Usugf PTA or PHS gets around it but with ADFS there may be a slight delay. I've got DBA deployed and it seems to work. The occasional PC will get licenced as a user. I have a script to reactivate against the device in AzureAD. Officially DBA isn't supported outside of the US. I was also recommended by Microsoft to use SCA on RDS but have encountered the first startup issue. I have User Profile Disks so the token does roam. @k-strider Are you using roaming profiles?
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now