web
You’re offline. This is a read only version of the page.
close
Skip to main content
Community site session details

Community site session details

Session Id :
Microsoft Dynamics CRM (Archived)

Certificate Authentication for Mobile apps

(0) ShareShare
ReportReport
Posted on by

We're using CRM 2013 with ADFS 3.0 on Server 2012 R2.  On mobile devices(iOS and Windows 8.1 phone), we can use the web browser to authenticate using a user certificate.  However with the CRM mobile app, neither device ever prompts us to select the cert, it just stops at the ADFS page.  Has anyone gotten this to work?

*This post is locked for comments

I have the same question (0)
  • CRMInnovation.com Profile Picture
    on at
    RE: Certificate Authentication for Mobile apps

    You need to do the following:

    Log on to the AD FS server as administrator and open a Windows PowerShell command window.

    Enter the following command.

    Windows PowerShell

    Add-AdfsClient -ClientId <CLIENT_ID> -Name <APP_NAME> -RedirectUri <REDIRECT_URI>

    Where <CLIENT_ID> is a unique number, <APP_NAME> is a name for the application, and <REDIRECT_URI> is any valid URI that AD FS is to redirect to after authentication has completed. It is recommended that the client ID be a GUID. You can generate a GUID in Microsoft Visual Studio by opening the Tools menu and clicking Create GUID.

  • wmatistic Profile Picture
    on at
    RE: Certificate Authentication for Mobile apps

    I had found that line to run in powershell on a blog and tried it, but saw no change.  We can get into the mobile apps without issue if we use forms based authentication, but we prefer to be able to just use certificates.  When we uncheck forms and just leave certificate on ADFS for the external trust, the app will open and get to the ADFS authentication page where it asks you to select a certificate, but we are never prompted with a list to select from(nor does it just auto choose the cert if it's the only one on the device).  It just sits at that page doing nothing.  So are we missing a step somewhere?

  • CRMInnovation.com Profile Picture
    on at
    RE: Certificate Authentication for Mobile apps

    If you are using the Microsoft Mobile app you must use ADFS.

    You may want to review this MSDN article.

    msdn.microsoft.com/.../dn531010.aspx

  • wmatistic Profile Picture
    on at
    RE: Certificate Authentication for Mobile apps

    Right, like I said we are using ADFS 3.0.  Within ADFS, we set the options to be for Certificate authentication on the CRM external trust.  We prefer this to form based because it's annoying to type in a long network password on a mobile device.  So we issue certificates to our enrolled mobile devices and would like that to be the method of authentication.  On the mobile devices, if we use the web browser, this works just fine.  We are prompted by ADFS to select our certificate and it passes back to the CRM website and logs us in.  But the mobile apps will not prompt for certificate selection.  I've read through that article and we've checked the steps.  Is what we want to do possible within the CRM apps, or are they not capable of certificate authentication?

  • wmatistic Profile Picture
    on at
    RE: Certificate Authentication for Mobile apps

    I've opened a case with Microsoft support to see if I can get an answer for this.  I'll update with details when I have them, in case anyone else is trying a similar setup.

  • Joe Woltering Profile Picture
    12,163 on at
    RE: Certificate Authentication for Mobile apps

    Does this also apply to ADFS 2.0 on Server 2008? I am having a similar problem trying to connect with the iPad app. The only thing my error log says is: ERROR]: Authentication: Authentication Interrupted

  • wmatistic Profile Picture
    on at
    RE: Certificate Authentication for Mobile apps

    Yes, we've seen similar problems with ADFS 2.  Official word from Microsoft support thus far is that certificate authenticate through their mobile apps has not been tested and they've passed it on to their Dev team to look into.  I can't imagine it would be hard to add, since cert auth works through the mobile web browsers already, but at this point all we can do is wait for an app update.

  • Community Member Profile Picture
    on at
    RE: Certificate Authentication for Mobile apps

    Hello -

    This is an old thread but we have the same problem...

    Using Dynamics CRM 2015 IFD with ADFS 3.0 on Server 2012

    As per the original question... on mobile devices [iOS9] we can use Safari to choose the Workplace Join certificate and authenticate successfully

    But with the Dynamics CRM mobile app [v 7.0.7] we don't get the opportunity to pick a certificate, it just gets stuck on the ADFS page and eventually throws a timeout error: "We're Sorry Your server is not available or does not support this application"

    Some anonymised screens below

    Has anybody got this to work?

    Thank you

    PS the app will authenticate OK using forms authentication only, but we prefer to use certificate authentication if possible

    ===

    Safari - OK

    7360.app.PNG

    Dynamics CRM app v 7.0.7 - No option to choose certificate and eventual fail

    7360.app.PNG

    app2.PNG

     

     

Under review

Thank you for your reply! To ensure a great experience for everyone, your content is awaiting approval by our Community Managers. Please check back later.

Helpful resources

Quick Links

Responsible AI policies

As AI tools become more common, we’re introducing a Responsible AI Use…

Abhilash Warrier – Community Spotlight

We are honored to recognize Abhilash Warrier as our Community Spotlight honoree for…

Leaderboard > 🔒一 Microsoft Dynamics CRM (Archived)

#1
HR-09070029-0 Profile Picture

HR-09070029-0 2

#1
UllrSki Profile Picture

UllrSki 2

#3
ED-30091530-0 Profile Picture

ED-30091530-0 1

Last 30 days Overall leaderboard

Featured topics

Product updates

Dynamics 365 release plans