The valid SPN enables the proper Kerberos authentication to occur and enables the report server for negotiate authentication. We need to make sure that we have a valid Service Principal Name (SPN). Both of these certificates must be part of a valid certificate authority that your machines recognize. You need to configure certificates for both the WAP application and the AD FS server. It's published as part of the WAP application. Configure your DNS record to point to the public IP address of the Web Application Proxy (WAP) server, for example.For example, you may have configured the AD FS server with the following URL. Configure a public DNS record for your AD FS server.
Configure your DNS record for the host name,, for example, to point to the public IP address of the Web Application Proxy (WAP) server.Determine the public URL that the user will connect to.Prerequisites Domain Name Services (DNS) configuration For the Power BI mobile apps, you also need to configure OAuth to connect to Power BI Report Server and SSRS. Through this integration, users who are away from the corporate network can access their Power BI Report Server and Reporting Services reports from their client browsers and be protected by AD FS preauthentication. This article discusses how to use Web Application Proxy (WAP) and Active Directory Federated Services (AD FS) to connect to Power BI Report Server, and SQL Server Reporting Services (SSRS) 2016 and later.