Microsoft OWA Integration with ADFS
The compromise of user credentials poses a risk of unauthorized access to accounts. Today, to minimize this risk, multi-factor authentication is used as a reliable solution. SecTrail çok aşamalı doğrulama için güvenilir ve esnek çözümler sağlamaktadır.
In this document, you can find information about two-factor authentication using one-time passwords (SMS, email, SoftOTP) with SecTrail for Microsoft Outlook Web Application
Integration of SecTrail with ADFS (Active Directory Federation Services)
-
- Kullanıcı tarayıcısı aracılığıyla e-posta adresini çağırır.
- Microsoft OWA redirects the user to the authentication screen of ADFS.
- At this screen, credentials are entered for initial authentication.
- The user is authenticated through Active Directory with the credentials provided through the redirection.
- If the verification is successful, the phone or e-mail address and user name information obtained through AD are transmitted to the SecTrail server, and the user is presented with the second login screen.
- The SecTrail server sends a one-time password to the address provided in the request (phone, email) via SMS or email. An external SMS proxy or email server is used during the transmission stage. In case of using a software token (SoftOTP), the password is generated via the SecTrail Authenticator mobile application.
- The user enters the one-time password provided by SecTrail (via SMS, email) or generated by the SecTrail Authenticator mobile application into the second login screen.
- The one-time password is sent to the SecTrail server via ADFS.
- The SecTrail server verifies the one-time password and sends the response to ADFS.
- If the response is successful, ADFS sends the authorization key granting the user access to OWA.
- The user starts their session on Microsoft OWA by making a request using this authorization key.
Mobile Application Support
If you want to use SoftOTP, you can ensure your security through the SecTrail Authenticator mobile application.
You can download the SecTrail Authenticator application to your mobile device from the Apple App Store or Google Play Store.