Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Outlook and Teams Unable to select/detect Certs #2157

Open
JoshIOps opened this issue Aug 11, 2024 · 0 comments
Open

Outlook and Teams Unable to select/detect Certs #2157

JoshIOps opened this issue Aug 11, 2024 · 0 comments

Comments

@JoshIOps
Copy link

  • Device: Pixel 9 Pro, Pixel 6, Moto G24
  • Android Version: UpToDate 14.0
  • MSAL Version Latest release of Outlook, Teams, Company Portal.

It seems like MSAL is looking in the Authenticator and Intune company Portal App thinking they have certs(Auth broker lives in them?)

You can easily test this by revoking MFA sessions on a user who is using Entra Cert based Auth on an android phone.

When a user changed their password and Azure revoked their sessions for a reauth, the issue started occurring.
I tested this on another user manually revoking their MFA sessions without changing their password same issue occurred. I also setup a brand new Android phone and had the same issue after enrolling it.

The issue is when the user opens outlook or teams and goes to sign in, it will pop up asking to use a cert on the device or a physical key. When selecting on the device the phone will freeze it will then eventually say ""company portal isn't responding" with the options of wait or cancel. Opening chrome in the work profile and going to a office app site will popup asking for the cert and works fine. So the issue doesn't appear to be the phone getting the cert, just the Office Apps are not accessing the Phones cert Store. I can confirm the Cert is inside the work profile as a browser or cert viewer app inside the workprofile can see it, auths work fine when using a browser in work profile, just not outlook or teams inside the work profile.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant