![]() I have gotten all microsoft apps working and am working on making Jamf Connect become the boot strap for the sso. All that being said, I wonder if one of the other processes that are running are what need to be added to the sso plist like Microsoft teams helper or the electron or squirrel processes. I know teams is a different division and doesnt seem to have a Natively developed mac app as well as the updater not being a part of the office updater pieces. I cant even get an bundle identifier for teams if i do a osascript -e 'id of app "Microsoft Teams"' it errors out. It has elements of "Electron" which is horrible at making mac apps. What it looks like though is their Teams app is designed with non native apple developer tools. Now Im seeing the same behavior as you describe. ![]() ![]() When it worked for us, it would show a drop down menu with the user name already populated that you can click on. SO I just checked teams again, and i'm guessing between last week and this week an update hit that is breaking it. For this reason, the flag is disabled by from what I've been told its best to use the installers on macadmins But we recommend that you use MFA more frequently instead. If your organization rarely uses MFA, you might want to enable the flag. We recommend keeping this flag disabled because it reduces the number of times the user is prompted to sign in. To enable the flag, use these parameters: In this case, the user is prompted only when MFA is required by an application or resource. Because the user gets fewer prompts overall, this setup is generally a good decision.Įnabling browser_sso_disable_mfa turns off MFA during initial bootstrapping and while getting the shared credential. This behavior allows the shared credential to be easily used across all other applications without the need to prompt the user if MFA is required later. ![]() ![]() The user is prompted for MFA even if it's not required for the application that the user has opened. Here is what I saw on that, and for some reason I had to set this, im sure there was some issue: Disable asking for MFA during initial bootstrappingīy default, the Microsoft Enterprise SSO plug-in always prompts the user for MFA during the initial bootstrapping and while getting a shared credential. ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |