Large CRLs cause intermittent authentication failures against Azure Active Directory (Azure AD) for users who perform Certificate Based Authentication (CBA) from Office apps on iOS and Android. This behavior also occurs for users who try to perform CBA against https://portal.office.com.
During the authentication attempt , the user is prompted to approve the use of his or her user certificate, and no on-screen error is returned. Instead of receiving an error, the user is redirected to a blank version of their corporate ADFS STS page.
Subsequent logon attempts are successful, but the authentication failures continue to reoccur intermittently.
During the authentication attempt , the user is prompted to approve the use of his or her user certificate, and no on-screen error is returned. Instead of receiving an error, the user is redirected to a blank version of their corporate ADFS STS page.
Subsequent logon attempts are successful, but the authentication failures continue to reoccur intermittently.