How to Fix Microsoft 365 Sign-In Redirects to Unreachable ADFS Server
Question details
Users are unable to sign into Microsoft 365, Azure, or email because the federated domain redirects to an offline or unavailable ADFS server.

- Product
- Microsoft 365
- Device & OS
- not provided
- Scenario
- Attempting to log into Microsoft 365 or Azure services using an account tied to a federated domain.
- Observed behavior
- The login process redirects to an Active Directory Federation Services server that is unreachable, preventing users from authenticating and accessing their accounts.
Ensure you have access to a cloud-only global administrator account (typically ending in .onmicrosoft.com) or are prepared to verify your tenant and DNS ownership with Microsoft Support.
Contact Microsoft Support for Federation Administration
Since the primary ADFS server is down, reaching out to Microsoft Support is the safest method to restore access if you lack a fallback admin account.
When an ADFS server fails completely, the domain must be converted from federated to managed authentication to bypass the broken redirection.
Microsoft Support can assist in unlinking the failed server after verifying your domain ownership.
If you have a fallback admin account, go to the Microsoft 365 admin center and navigate to 'Support' > 'Help & support' to open a service request.
Alternatively, post your issue in the Active Directory Federation Services section of Microsoft Q&A to get guidance from support engineers.
Be prepared to add a TXT record to your domain's DNS settings to prove ownership to the Microsoft support agent.
Ask the administrator or support agent to convert your domain to managed authentication or update your federation configuration.

Convert Federated Domain to Managed via PowerShell
If you have access to a cloud-only global administrator account, you can manually disable federation using the MSOnline PowerShell module.
Switch to WPS Office for a Hassle-Free Experience
Tired of dealing with complex server configurations, ADFS outages, and login failures? WPS Office provides a robust, lightweight, and offline-capable alternative to Microsoft 365. Keep your productivity high without relying on complex enterprise identity servers.
- 1. Visit the WPS Office Website: Go to the official WPS Office website on your computer.
- 2. Download the Installer: Click the 'Free Download' button to obtain the lightweight installation package.
- 3. Install and Launch: Run the installer, follow the on-screen setup prompts, and open WPS Office to start working immediately.

Frequently Asked Questions
Why does my Microsoft 365 login redirect to an ADFS server?
When a domain is set up for federation, Microsoft 365 delegates user authentication to your organization's on-premises Active Directory Federation Services (ADFS) server. If this server goes offline, the redirect fails, blocking access.
Can I bypass the broken ADFS server to access my admin account?
Yes, you can bypass the ADFS redirection by logging in with a cloud-only global administrator account, which typically uses the default '.onmicrosoft.com' domain instead of your custom federated domain.
How long does it take to convert a domain from federated to managed?
Once the PowerShell command is executed or Microsoft Support initiates the change, it can take anywhere from a few minutes to up to 2 hours for the authentication update to fully propagate across all Azure and Microsoft 365 services.




