Consider the following scenario:
- You configure Single Sign-On (SSO) on a Windows Server 2012 R2-based Active Directory Federation Services (AD FS) server.
- You configure a user certificate authentication as the first-stage authentication.
- You configure an external authentication as the second-stage authentication.
- You enable both authentication stages.
- You try to access a device by performing the authentications.