Skip to main content

Notifications

Announcements

No record found.

Dynamics 365 general forum

Dynamics 365 on premise | ADFS 3.0 | Unstable Token Life time

Posted on by 105

Hello Guys , 

I'm new in ADFS integration with Dynamics 365 

I implemented Claim based authentication and ADFS , and the client requested to have session time out 

 I set the Token lifetime to 30 (mins) using Windows power shell on ADFS server 

The problem is that the session time out is not occurring at fixed periods , sometimes the re-authentication prompt occur after 32 mins , sometimes after 40 mins

Also I've to refresh the CRM  Web APP to see the re-authentication prompt 

I need the session to be terminated after 30 mins automatically and with no variation in time

How can I achieve that 

Thanks ,

  • Ahmed Ghaib Profile Picture
    Ahmed Ghaib 105 on at
    RE: Dynamics 365 on premise | ADFS 3.0 | Unstable Token Life time

    Thanks Dear For Reply 

    Does Token life time expire even user is active with CRM or inactive (idle) ??????

    as I noticed that when the user is interacting with CRM , the session always expires ??

    Regards, 

  • Verified answer
    Drew Poggemann Profile Picture
    Drew Poggemann 9,079 on at
    RE: Dynamics 365 on premise | ADFS 3.0 | Unstable Token Life time

    Hi Ahmed,

    Not sure on this.  The following article suggests setting lower than the token.

    stackoverflow.com/.../adfs-2-0-time-out-and-relation-between-freshness-value-tokenlifetime-and-webssol

    Thanks,

  • Ahmed Ghaib Profile Picture
    Ahmed Ghaib 105 on at
    RE: Dynamics 365 on premise | ADFS 3.0 | Unstable Token Life time

    Hello Dear

    Thanks for your reply

    After checking the sso life time and token life time were both set to 30 mins for testing purposes

    Shall I change ssolifetime or disable it to have fixed session time out

    Thank you

  • Suggested answer
    Drew Poggemann Profile Picture
    Drew Poggemann 9,079 on at
    RE: Dynamics 365 on premise | ADFS 3.0 | Unstable Token Life time

    Hi Ahmed,

    It might be the SSOLifetime affecting the situation.  Could you check your ADFS settings around these fields?

    docs.microsoft.com/.../set-adfsproperties

      [-SsoLifetime <Int32>]

      [-SsoEnabled <Boolean>]  

    Check this out:  community.dynamics.com/.../205465 - some good comments in here regarding the token timeout challenges.  

    Hope this helps Ahmed.

    Thanks,

Under review

Thank you for your reply! To ensure a great experience for everyone, your content is awaiting approval by our Community Managers. Please check back later.

Helpful resources

Quick Links

November Spotlight Star - Khushbu Rajvi

Congratulations to a top community star!

Forum Structure Changes Coming on 11/8!

In our never-ending quest to help the Dynamics 365 Community members get answers faster …

Dynamics 365 Community Platform update – Oct 28

Welcome to the next edition of the Community Platform Update. This is a status …

Leaderboard

#1
André Arnaud de Calavon Profile Picture

André Arnaud de Cal... 291,280 Super User 2024 Season 2

#2
Martin Dráb Profile Picture

Martin Dráb 230,235 Most Valuable Professional

#3
nmaenpaa Profile Picture

nmaenpaa 101,156

Leaderboard

Featured topics

Product updates

Dynamics 365 release plans