Skip to content

Ulysses Neves

Microsoft Entra ID, authentication, and hybrid identity troubleshooting.

Menu
  • Home
  • Microsoft Azure
  • Microsoft AD FS
  • Microsoft 365
  • Contact
  • Troubleshooting Index
Menu

Microsoft Identity Troubleshooting Index

Use this index to find Microsoft identity deployment and troubleshooting guidance by product, scenario, error code, or message. Articles marked as historical contain prominent notices and links to current Microsoft documentation.

Error codes and troubleshooting messages

  • Troubleshooting Error Code '0x000005e' in WHfB: PIN Authentication Woes (2024)
  • WHfB: Fixing Windows Hello for Business error 'LogoncertTemplateReady: NO (StateNoTemplate)' (2023)
  • WHfB Cloud Kerberos Trust – Fixing config issue: 'Cloud trust for on-premise auth policy is enabled: No' (2023)
  • WHfB Cloud Kerberos Trust – Windows Hello for Business provisioning will not be launched. (2023)
  • AD FS – Fixing error message: None of the UPNs were successful for S4U Logon call (2023)
  • AD FS – Fixing error message ‘Your credentials did not work’ when authenticating to a Microsoft Entra joined machine (2023)
  • Device registration – Fixing error message 'The registration service could not successfully authenticate your account.' (2023)
  • AD FS – Fixing error message 'The Web request failed because the web.config is malformed. Access Denied' when establishing AD FS WAP Trust (2023)
  • Device registration – Historical guidance: Fixing “wiaormultiauthn is not valid” on down-level Windows (2022)
  • Microsoft Entra hybrid join – Troubleshooting error code 0x80070005 during the ‘Join’ phase (2022)
  • Microsoft Entra hybrid join – Troubleshooting error code 0x801c0021 during the ‘discover’ phase (2022)
  • Microsoft Entra hybrid join – Troubleshooting error code 0x8007054b during the pre-check phase (2022)
  • WHfB – Fixing error message 0xCAA20064 during windows hello for business certificate trust enrollment (2022)
  • Device Registration – Investigating error message: ' DeviceAuthStatus : FAILED. Device is either disabled or deleted' (2022)
  • Microsoft Entra hybrid join – Fixing error message error_missing_device (2022)
  • WHfB – Fixing message 'That option is temporarily unavailable. For now, please use a different method to sign in' (2022)
  • AD FS – Fixing error message 'No client certificate associated with the request was found' when establishing WAP Trust (2022)
  • WHfB: Troubleshooting Windows Hello for Business provisioning AdfsRaIsReady:UNKNOWN (2022)
  • WHfB – Fixing error message 'Your credentials could not be verified' (2022)
  • AD FS Fixing error message “Error 1069: The service did not start due to logon failure” (2022)
  • Microsoft Entra ID – Fixing the Download devices feature with a ‘failed’ error message (2022)
  • AD FS – Historical MFA Server troubleshooting: “The selected authentication method is not available” (2021)
  • AD FS – Fixing error message 'The SSL certificate specified by thumbprint does not have a subject name that matches the specified' during WAP trust process (2021)
  • AD FS – Fixing error message 'The system cannot find the file specified' when adding a new AD FS node to the farm (2021)
  • Microsoft Entra hybrid join – Fixing error message: Server error: The user certificate is not found on the device with id: (2021)
  • AD FS – WAP Trust error message System.Security.Cryptography.CryptographicException: Access is denied. (2021)
  • AD FS – Fixing error message MSIS9605: The client is not allowed to access the requested resource on AD FS 2019 (2021)
  • AD FS – Troubleshooting WAP Trust error: ProxyTrustUserName listener error (2021)
  • AD FS – Troubleshooting WAP Trust error The remote server returned an error: (503) Server Unavailable (2021)
  • AD FS – Troubleshooting Wap trust error The remote server returned an error: (400) Bad Request (2021)
  • AD FS – Troubleshooting error: The certificate specified does not meet all the requirements of an SSL certificate (2021)
  • AD FS – Troubleshooting WAP Trust errors (database replication) (2021)
  • AD FS – Troubleshooting AD FS event 'web.config file is malformed' (2021)
  • AD FS – Fixing event 543 on AD FS 2019 on mixed mode farm (2021)
  • AD FS – Troubleshooting TLS version errors when configuring WAP trust with AD FS (2021)

AD FS

  • AD FS – Fixing error message: None of the UPNs were successful for S4U Logon call (2023)
  • AD FS – Fixing error message ‘Your credentials did not work’ when authenticating to a Microsoft Entra joined machine (2023)
  • AD FS – Fixing error message 'The Web request failed because the web.config is malformed. Access Denied' when establishing AD FS WAP Trust (2023)
  • WHfB – Fixing error message 0xCAA20064 during windows hello for business certificate trust enrollment (2022)
  • AD FS – Backing up/restore AD FS configurations into Azure using AD FS Rapid Restore tool (2022)
  • AD FS – Fixing error message 'No client certificate associated with the request was found' when establishing WAP Trust (2022)
  • AD FS Fixing error message “Error 1069: The service did not start due to logon failure” (2022)
  • AD FS – Historical guidance: Enabling MFA Server as primary authentication method (2022)
  • AD FS – Phased MFA provider's migration on federated tenant using AD FS 2019 Additional Authentication Policy (2021)
  • AD FS – Historical MFA Server troubleshooting: “The selected authentication method is not available” (2021)
  • AD FS – Fixing error message 'The SSL certificate specified by thumbprint does not have a subject name that matches the specified' during WAP trust process (2021)
  • AD FS – Changes on AD FS endpoints not replicating on Web Application Proxy servers (2021)
  • AD FS – Fixing error message 'The system cannot find the file specified' when adding a new AD FS node to the farm (2021)
  • AD FS – WAP Trust error message System.Security.Cryptography.CryptographicException: Access is denied. (2021)
  • AD FS – Fixing error message MSIS9605: The client is not allowed to access the requested resource on AD FS 2019 (2021)
  • AD FS – Troubleshooting WAP Trust error: ProxyTrustUserName listener error (2021)
  • AD FS – Deploying AD FS on SQL Server running on a custom port (2021)
  • AD FS – Troubleshooting WAP Trust error The remote server returned an error: (503) Server Unavailable (2021)
  • AD FS – Troubleshooting Wap trust error The remote server returned an error: (400) Bad Request (2021)
  • AD FS – Troubleshooting error: The certificate specified does not meet all the requirements of an SSL certificate (2021)
  • AD FS – Troubleshooting WAP Trust errors (database replication) (2021)
  • AD FS – Troubleshooting AD FS event 'web.config file is malformed' (2021)
  • AD FS – Fixing event 543 on AD FS 2019 on mixed mode farm (2021)
  • AD FS – Troubleshooting TLS version errors when configuring WAP trust with AD FS (2021)
  • AD FS – Joining a new federation server to an existing AD FS farm using PowerShell (2021)
  • AD FS – Accessing the certificate store of a gMSA account (2021)
  • AD FS – Migrating ADFS configuration Database from WID to SQL using SSMS (2021)
  • AD FS – Controlling access to applications using Banned Ip List on AD FS (2021)
  • AD FS – Configuring Extranet Lockout Threshold Familiar Location in AD FS (2020)
  • AD FS – Identifying WS-FED and SAML protocols in AD FS with Fiddler (2020)
  • AD FS – Configuring Claims Provider Trusts between two AD FS farms (2020)
  • AD FS – Identifying servers running the Web Application Proxy service in the AD FS environment (2020)
  • AD FS – Updating the SSL and Service Communication Certificates on AD FS (2020)
  • AD FS – Updating the Token-signing and Token-decrypting certificates in AD FS (2020)
  • AD FS – Protecting users with AD FS Extranet Smart Lockout (2020)
  • AD FS – How to Configure JEA (Just Enough Administration) with AD FS (2020)
  • Microsoft Entra ID – How to limit access to Outlook Web Access data using a CA policy (2020)
  • AD FS – Monitoring AD FS with the Microsoft Entra Connect Health Agent for AD FS (2020)
  • AD FS – Controlling Access to the Azure Portal Using AD FS Access Policies (2020)
  • AD FS – Integrating Microsoft Entra Multifactor Authentication with AD FS (2020)
  • AD FS – Enabling the user password update portal in AD FS (2020)
  • AD FS – Customizing the AD FS authentication portal (2020)

Windows Hello for Business

  • Microsoft Entra ID CAP | Enforcing WHfB using Authentication Strength (2024)
  • Troubleshooting Error Code '0x000005e' in WHfB: PIN Authentication Woes (2024)
  • WHfB: Fixing Windows Hello for Business error 'LogoncertTemplateReady: NO (StateNoTemplate)' (2023)
  • WHfB Cloud Kerberos Trust – Fixing config issue: 'Cloud trust for on-premise auth policy is enabled: No' (2023)
  • WHfB Cloud Kerberos Trust – Windows Hello for Business provisioning will not be launched. (2023)
  • WHfB – Suppressing Windows Hello for Business provisioning using Group Policy (2022)
  • WHfB – Fixing message 'That option is temporarily unavailable. For now, please use a different method to sign in' (2022)
  • WHfB: Troubleshooting Windows Hello for Business provisioning AdfsRaIsReady:UNKNOWN (2022)
  • WHfB – Fixing error message 'Your credentials could not be verified' (2022)

Device identity and hybrid join

  • Device registration – Fixing error message 'The registration service could not successfully authenticate your account.' (2023)
  • Device registration – Historical guidance: Fixing “wiaormultiauthn is not valid” on down-level Windows (2022)
  • Microsoft Entra hybrid join – Troubleshooting error code 0x80070005 during the ‘Join’ phase (2022)
  • Microsoft Entra hybrid join – Troubleshooting error code 0x801c0021 during the ‘discover’ phase (2022)
  • Microsoft Entra hybrid join – Troubleshooting error code 0x8007054b during the pre-check phase (2022)
  • Device Registration – Investigating error message: ' DeviceAuthStatus : FAILED. Device is either disabled or deleted' (2022)
  • Microsoft Entra hybrid join – Fixing error message error_missing_device (2022)
  • Microsoft Entra hybrid join – Fixing error message: Server error: The user certificate is not found on the device with id: (2021)
  • Microsoft Entra ID – How to emulate an Android device with Android Studio (2020)
  • Microsoft Entra ID Devices – Joining a Windows 10 Device as Microsoft Entra Hybrid Joined (2019)
  • Microsoft Entra ID Devices – Manually joining a Windows 10 device to Microsoft Entra ID (2019)
  • Microsoft Entra ID Devices – Manually Registering a Windows 10 Device in Microsoft Entra ID (2019)
  • Microsoft Entra ID Devices – Introduction to Device Management in Microsoft Entra ID (2019)

MFA and passwordless authentication

  • Microsoft Authenticator Will Block Jailbroken Devices in 2026 — What You Need to Know (2026)
  • The Journey to Password Authentication – What is the Passwordless Authentication? (2022)
  • Microsoft Entra multifactor authentication – Identifying whether a user is blocked for MFA in Microsoft Entra ID (2020)
  • Microsoft Entra Multifactor Authentication – Populating Phone Information for MFA Using PowerShell and Microsoft Graph (2020)
  • Microsoft Entra ID – Controlling Unknown Devices Using Conditional Access Policy in Microsoft Entra ID (2020)
  • Microsoft Entra ID – Enabling SMS-based authentication (2020)
  • Microsoft Entra Conditional Access Policy – Controlling browsing sessions using Conditional Access policies (2020)
  • Microsoft Entra ID – Listing Contacts for User Authentication in Entra ID using PowerShell (2020)
  • Azure passwordless – Enabling access to Azure without using passwords (2020)
  • Microsoft Entra multifactor authentication – Controlling guest user access in Azure (2020)
  • Microsoft Entra ID – Enabling the MFA registration policy using Microsoft Entra ID Identity Protection (2020)
  • Microsoft Entra ID + 3rd-Party MFA – Configuring MFA with DUO (2020)
  • Microsoft Entra multifactor authentication – Configuring MFA usage exception by named location (2019)
  • Microsoft Entra multifactor authentication – How to enable MFA using a conditional access policy (2019)
  • Microsoft Entra multifactor authentication – Assigning licenses to users in Azure for MFA use (2019)
  • Microsoft Entra multifactor authentication – Historical per-user MFA configuration (2019)
  • Microsoft Entra Multifactor Authentication – Service Configuration (2019)
  • Microsoft Entra multifactor authentication – Introduction to Multi-factor Authentication (2019)
  • Microsoft Azure Identity (2019)

Microsoft Entra ID and Conditional Access

  • Enhancing Azure role activation security with FIDO2/Passkeys (2024)
  • Microsoft Entra Conditional Access – Enforcing passwordless sign-in with Microsoft Authenticator using authentication strengths (2023)
  • Microsoft Entra ID IPv6 support – Prepare for the change (2023)
  • Microsoft Entra ID – Fixing the Download devices feature with a ‘failed’ error message (2022)
  • Microsoft Entra application proxy – Historical connector installation and current prerequisites (2020)
  • Microsoft Entra Conditional Access – Configuring Microsoft 365 using a Conditional Access policy (2020)
  • Microsoft Entra ID – Integrating Microsoft Entra ID identities for access to Azure SQL (2020)
  • Azure VM – Integrating Windows Server 2019 Access with Microsoft Entra ID Authentication (2020)
  • Microsoft Entra ID – Controlling Access to Azure Through Terms of Use (2020)
  • Microsoft Entra ID – Blocking external access to Dynamics 365 using conditional access policy (2020)
  • Microsoft Entra ID – Controlling security info registration using Conditional Access Policy (2020)
  • Microsoft Entra Privileged Identity Management (PIM) – Monitoring Privileged Access with Alerts and Event History (2019)
  • Microsoft Entra Privileged Identity Management (PIM) – Configuring Access Review (2019)
  • Microsoft Entra Privileged Identity Management (PIM) – Controlling privileged access (2019)
  • Microsoft Entra Privileged Identity Management (PIM) – Enabling PIM (2019)
  • Microsoft Entra Connect Sync – Filtering objects by OU (2019)
  • Microsoft Entra Connect – Custom Installation – Step by Step (2019)
  • Microsoft Entra Connect – Express Settings – Step by Step (2019)
  • Microsoft Entra ID – Introduction to Microsoft Entra Connect (2019)
  • Microsoft Entra ID – Custom Domains and Directories (2019)
  • Azure – Role-based access control (RBAC) (2019)
  • Microsoft Entra ID – Introduction (2019)
  • Azure Access Control – Step by Step (2019)

Microsoft Azure and Microsoft 365

  • Azure App Services – Publishing an application with a custom domain and SSL on Azure (2020)
  • Azure Resource Locks (2019)
  • Creating a Resource Group using PowerShell and Azure CLI (2019)
  • Creating a Resource Group in the Azure portal (2019)
  • Microsoft 365 Education – Licensing (2019)
  • Microsoft 365 Business – Licenses (2019)
  • Microsoft 365 Enterprise – Licenses (2019)
  • Microsoft 365 – Introduction (2019)

Other technical articles

  • Windows Services – Solving common issues that prevent Windows services from starting (2023)
  • Cloud Summit 2021 (2021)
  • Azure Summit session: Securing Cloud access with Azure Active Directory (2021)
  • Meetup – Microsoft Azure + Microsoft 365 (2019)
  • Hello, everyone! (2019)

Recent Posts

  • Microsoft Entra Kerberos key rotation: what changes—and what administrators should check September 6, 2026
  • Microsoft Authenticator Will Block Jailbroken Devices in 2026 — What You Need to Know March 17, 2026
  • Enhancing Azure role activation security with FIDO2/Passkeys September 23, 2024
  • Microsoft Entra ID CAP | Enforcing WHfB using Authentication Strength April 21, 2024
  • Troubleshooting Error Code ‘0x000005e’ in WHfB: PIN Authentication Woes February 11, 2024

Archives

  • September 2026
  • March 2026
  • September 2024
  • April 2024
  • February 2024
  • December 2023
  • September 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • March 2023
  • February 2023
  • January 2023
  • December 2022
  • October 2022
  • September 2022
  • August 2022
  • July 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • February 2022
  • January 2022
  • December 2021
  • November 2021
  • October 2021
  • September 2021
  • August 2021
  • July 2021
  • June 2021
  • May 2021
  • April 2021
  • March 2021
  • February 2021
  • January 2021
  • December 2020
  • November 2020
  • October 2020
  • September 2020
  • August 2020
  • July 2020
  • June 2020
  • May 2020
  • April 2020
  • March 2020
  • February 2020
  • January 2020
  • December 2019
  • November 2019
  • October 2019
  • September 2019
  • August 2019
  • July 2019

Tags

#aaddownleveldevice #adfs #adfscertificate #adfscertificates #adfsmfaadapter #azureauth #azureCA #azuredevice #capolicy #cloudsummit2021 #conditionalaccess #conditionalaccesspolicy #deviceregistration #farmbehavior #gopasswordless #mfaserver #msidentity #namedlocation #securingazure #securingazuread #sslprivatekey #troubleshootingadfs #troubleshootingwaptrust #tshootadfs #waptrust #webapplicationproxy #WHFBcerttrust #whfbdeployment #WHfBhybridsetup #WHfBprovisioning #widdatabase adconnect AD FS authenticationstrength az500 azurepim Azure security cloudsecurity microsoft365 Microsoft Azure Microsoft Entra hybrid join Microsoft Entra ID Microsoft Entra MFA PowerShell WHfB
©2026 Ulysses Neves | Design: Newspaperly WordPress Theme
Ulysses Neves
Gerenciar Consentimento de Cookies
Para fornecer as melhores experiências, usamos tecnologias como cookies para armazenar e/ou acessar informações do dispositivo. O consentimento para essas tecnologias nos permitirá processar dados como comportamento de navegação ou IDs exclusivos neste site. Não consentir ou retirar o consentimento pode afetar negativamente certos recursos e funções.
Funcional Always active
O armazenamento ou acesso técnico é estritamente necessário para a finalidade legítima de permitir a utilização de um serviço específico explicitamente solicitado pelo assinante ou utilizador, ou com a finalidade exclusiva de efetuar a transmissão de uma comunicação através de uma rede de comunicações eletrónicas.
Preferências
O armazenamento ou acesso técnico é necessário para o propósito legítimo de armazenar preferências que não são solicitadas pelo assinante ou usuário.
Estatísticas
O armazenamento ou acesso técnico que é usado exclusivamente para fins estatísticos. O armazenamento técnico ou acesso que é usado exclusivamente para fins estatísticos anônimos. Sem uma intimação, conformidade voluntária por parte de seu provedor de serviços de Internet ou registros adicionais de terceiros, as informações armazenadas ou recuperadas apenas para esse fim geralmente não podem ser usadas para identificá-lo.
Marketing
O armazenamento ou acesso técnico é necessário para criar perfis de usuário para enviar publicidade ou para rastrear o usuário em um site ou em vários sites para fins de marketing semelhantes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
Ver preferências
  • {title}
  • {title}
  • {title}