Event Id | 725 |
Source | Microsoft-Windows-ADFS |
Description | The Group Policy setting 'DisallowFederationService' is configured for this machine. The Federation Service will fail all requests until this condition is corrected. |
Event Information | According to Microsoft : Cause This event is logged when the Federation Service encountered an error while loading the trust policy. Resolution Disable or do not configure the DisallowFederationService Group Policy setting for AD FS Disable or do not configure the DisallowFederationService Group Policy setting (also known as Turn off Federation Service) for Active Directory Federation Services (AD FS). To perform this procedure, you must be a member of the Domain Admins or Enterprise Admins group in Active Directory Domain Services (AD DS), or you must have been delegated the appropriate authority. To disable the Turn off Federation Service Group Policy setting: 1.On a domain controller running Windows Server 2008, click Start, point to Administrative Tools, and then click Group Policy Management. 2.Double click Forest:forestname, double-click Domains, double-click domainname, right-click Default Domain Policy, and then click Edit. 3.Under Computer Configuration, double-click Administrative Templates, double-click Windows Components, and then click Active Directory Federation Services. 4.In the details pane, double-click Turn off Federation Service. 5.In the Turn off Federation Service Properties dialog box, click Disabled or Not Configured, and then click OK. Verify Verify that you can access the Active Directory Federation Services (AD FS)-enabled application from a client browser and that the resource can be accessed. |
Reference Links | Event ID 725 from Source Microsoft-Windows-ADFS |
Catch threats immediately
We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.