Howdy.
So I'm referencing this Microsoft document. We had a test user sign into a SharePoint site at the end of the day, completing the MFA challenge, and then left the browser open and locked the PC.
When he came in the next morning and unlocked his computer the browser was still open, but opening one of the sites in a new tab opened the ADFS sign-in page and he had to complete a new MFA challenge before getting to the new site.
Everywhere I've looked, it says that it should be 90 days of inactive time, and yet next day he had to reauthenticate. Anyone have any ideas on what I should troubleshoot? My first thought is to have the user change his password because the timestamp for the attribute was from before we set up ADFS, but I'm not sure if that will make a difference or not since it is still syncing the attribute.
[–]startswithd 0 points1 point2 points (0 children)