AADSTS50107: Requested federation realm object 'http:/<Identity Router FQDN>/' does not exist when trying to access the Microsoft Azure portal for RSA SecurID Access
Originally Published: 2019-11-18
Article Number
Applies To
RSA Product/Service Type: Cloud
Product Name: Microsoft Office 365
Product Description: WS-federation integration with SecurID Access
Issue
AADSTS50107: Requested federation realm object 'http://<Identity Router FQDN>/' does not exist.
On the cloud admin user event monitor, the user is authenticated successfully using the password but still not being able to login to Microsoft Azure.
Cause
Resolution
- Check the WS-federation configuration on the Azure side through Windows PowerShell by running the command below:
Get-MsolDomainFederationSettings –DomainName $domain | Format-List *
- Compare all the output of the configuration with the configuration of the application on the cloud admin side.
The difference could be a very minor between the URI on both sides and can be as simple as an extra backslash at the end of the URI. For example, in the strings below, the first IssuerUri is on the Microsoft side:
IssuerUri : http://<Identity Router FQDN>.com
Note the difference with the IssuerUri on the cloud admin side:
IssuerUri : http://<Identity Router FQDN>.com/
- Change the URI on either side so that they match each other.
- Make sure all other URIs also match on both sides
Notes
For more information, see the Microsoft-Office-365-WS-Federation-SSO-Configuration-RSA-Ready-Implementation-Guide
Related Articles
RSA Authentication Manager 8.5 Undergoing Certification for the Azure Marketplace 5Number of Views RSA Announces RSA Authentication Manager 8.4 Now Available from the Azure Marketplace 11Number of Views Microsoft Azure Active Directory - IdP for Cloud Authentication Service - RSA Ready Implementation Guide 138Number of Views Microsoft Azure Active Directory - IdP for My Page - RSA Ready Implementation Guide 109Number of Views When trying to access the FSM Adapter Manager get error: cannot open database 2Number of Views
Trending Articles
RSA Authentication Manager Upgrade Process RSA Release Notes for RSA Authentication Manager 8.8 RSA RADIUS Server service failed to start in the RSA Authentication Manager 8.1 Operations Console Microsoft Entra ID External MFA - Relying Party Configuration Using OIDC - RSA Ready Implementation Guide RSA Release Notes: Cloud Access Service and RSA Authenticators
Don't see what you're looking for?