profile
viewpoint

Ask questionsWindows Hello certificates requires enabling a permitted strong authentication provider

When I run the command to enroll for an enrollment agent certificate, I got the following error.

Set-AdfsCertificateAuthority -EnrollmentAgent -EnrollmentAgentCertificateTemplate WHFBEnrollmentAgent -WindowsHelloCertificateTemplate WHFBAuthentication

WARNING: PS0343: Issuing Windows Hello certificates requires enabling a permitted strong authentication provider, but no usable providers are currently configured. These authentication providers are not supported for Windows Hello certificates: MicrosoftPassportAuthentication. Windows Hello certificates will not be issued until a permitted strong authentication provider is configured. <pre> PS C:> Get-AdfsAuthenticationProvider | ft

AdminName AllowedForPrimaryExtranet AllowedForPrimaryIntranet AllowedForAdditionalAuthentication AuthenticationMethods


Forms Authentication True True False {urn:oasis:names:t... Windows Authentication False True False {urn:ietf:rfc:1510... Certificate Authentication True True True {urn:ietf:rfc:2246... Device Authentication True True False {http://schemas.mi... Azure MFA True True False {http://schemas.mi... Azure MFA False False True {http://schemas.mi... Microsoft Passport Authentication True True False {urn:ietf:rfc:2246... </pre>

MicrosoftDocs/windows-itpro-docs

Answer questions kylecweeks

I understand that this is closed. Seeing as there was no update - adding in that I deployed a Server 2019 Server by mistake and received this exact same error. Server 2016 ADFS did not.

useful!

Related questions

tdlrecover.exe - Windows 10.0.18362.XXX - TileDataLayer is deprecated hot 1
DisableEnterpriseAuthProxy=0 and Windows Defender ATP hot 1
CloudAssignedOobeConfig has a 1024 bitmap to skip keyboard layout hot 1
Documentation is wrong and does not work get this error hot 1
0x801c03f3 not listed hot 1
Give an example how to utilize RestrictedGroups feature hot 1
0x801c0451 not listed hot 1
How to identify which TPM 2.0 PCR Bank is being used hot 1
How to identify which TPM 2.0 PCR Bank is being used hot 1
InstallWindowsDefenderApplicationGuard hot 1
0x801c044f not listed... hot 1
How to identify which TPM 2.0 PCR Bank is being used hot 1
Unknown OS architecture when runnig on non-english OS hot 1
FileExplorerNamespaceRestrictions hot 1
0x801c0451 not listed hot 1
source:https://uonfu.com/
Github User Rank List