All Questions

Tagged with
Filter by
Sorted by
Tagged with
1 vote
2 answers
113 views

Azure AD/Entra-ID, syncing single domain on-prem environment, to single Azure tenant with multiple exchange mailbox domains

We currently have our Azure tenant, with the verified domain "superiorproducts.com". We also have our on-prem traditional AD domain, which is "supprod.local", with 4 domain ...
boog's user avatar
  • 230
0 votes
0 answers
24 views

Locked out of AD B2C Settings due to the missing 2FA

As an admin, I have always had access to Azure AD B2C Settings by opening B2C tenant to create user flows, add new users, etc. I had to replace my cell phone and the I cannot access to the AD B2C ...
Arash's user avatar
  • 103
-1 votes
1 answer
170 views

Error trying to join Azure storage account to domain

I'm running into an error running Powershell (v5.1) cmdlet Join-AzStorageAccount to join an Azure storage account to my domain. I just did this successfully with a storage account, but when I try to ...
phillipank's user avatar
0 votes
0 answers
26 views

Allowing users to Utilize Remote Desktop Connection on their PC

Hi everybody i need help with this issue. So currently all users cannot connect in via RDP unless they are an administrator on their PC.I want to enable RDP access to all users , but Windows cannot ...
Jacob's user avatar
  • 1
0 votes
1 answer
73 views

How can i connect on-premises LDAP over Internet? [closed]

I am developing a .net core API that will host on Azure. The main aim of this API is to connect with LDAP (On-premises). If the application hosts on-premises then there is no problem connecting with ...
Imran Yaseen's user avatar
0 votes
1 answer
26 views

How to unfold a group that is a direct member of another group into its included users in Azure AD?

How to unfold a group that is a direct member of another group into its included users in Azure AD? I'm trying to use a group to configure SSO for a set of users. However, it only works when users ...
Shuzheng's user avatar
  • 419
1 vote
1 answer
289 views

How to block Microsoft forcing Office 365 Semi-Annual systems to the Monthly update channel?

For years, my company has followed the usual software patching strategy of every IT department I've ever worked for, which is to validate new software versions in testing before rolling the upgrade ...
Wes Sayeed's user avatar
  • 1,902
0 votes
1 answer
36 views

Hybrid AD Joined and Autopilot

I've been working on setting up our Autopilot onboarding with our Hybrid AD. I have managed to join a device to the domain successfully, but I have noticed some differences against when we do this ...
AngryDog's user avatar
0 votes
1 answer
63 views

Is Azure AD (only) enough for simple identity requirements

I'm looking at helping out a small business, who currently operates four very small branch offices (ranging from 4 - 10 windows PCs). Currently, shared accounts are used on these machines - obviously ...
R3uben's user avatar
  • 3
0 votes
0 answers
139 views

Azure AD Credentials With On Premise VM and SSAS Tabular Cube

I have a Azure VM that I've joined to my Azure AD, works great. I've installed (Development Edition SQL Server 2022) SSAS Tabular on this server using the local admin account and would like to use ...
David Rogers's user avatar
0 votes
0 answers
277 views

No domain profile in Windows Defender Firewall

We've moved from an on site server to online at our company, and we've had our user profiles rebuilt on our PC's so that we use Azure based profiles instead of domain profiles. I'm having issues ...
AutoBaker's user avatar
  • 188
0 votes
1 answer
901 views

Is it possible to fully undelete an Azure AD hybrid user account? If so, how?

Whereas this article says a deleted AD user only needs to be restored from the recycle bin for its Azure AD object to aslo be restored. For us, when an AD user object is undeleted, Azure AD Connect ...
Nathan Hartley's user avatar
0 votes
0 answers
95 views

Azure P2S killing Kerberos Connection

EDIT: I can confirm that doing the registry change as mentioned here and here does in fact Band-Aid the issue. But why? Why do I need this work around just because I am using a laptop on the VPN when ...
alexander7567's user avatar
0 votes
0 answers
427 views

Azure App Proxy with onPremise RDS SSO only with AzureAD

My client have Azure Active Directory with synchronized their onPremise Active Directory. We want to provide him Remote Desktop Services behind Azure App Proxy from dedicated onPremise Active ...
Bartek Walkowski's user avatar
0 votes
0 answers
29 views

2 Issuing CAs are Effected by Subnet Region

We are working to set up a 2-tier pki with 2 issuing CAs in different regions/subnets. We were able to get everything looking right on pkiview.msc. We are still having trouble though with the second ...
Woogi's user avatar
  • 1
-1 votes
1 answer
187 views

How to connect .local AD DS environment to Azure Virtual Desktop

I have a client that wants to migrate from on prem to hybrid to eventually cloud only and they have a few apps that I want to run via Azure Virtual Desktop as opposed to RDS (licensing for avd is ...
SailorAdmin's user avatar
0 votes
1 answer
1k views

AD Connect Synchronisation Update existing users instead of creating new ones

I'm currently setting up AD Connect to sync my users from AD to AzureAD and vice versa. Maybe I did not understand the whole thing correctly. In my mind, what AD Conncet Synchronisation does is the ...
Balthazar's user avatar
  • 171
1 vote
1 answer
40 views

How can I authenticate workstation on Azure ID when tenant uses SAML to Google?

I have some clients using Google SALM (https://support.google.com/a/answer/6363817?hl=en) on Microsoft O365, when a user need access to Office 365 tools and use your corporate e-mail account, ...
Ivan Carlos's user avatar
0 votes
1 answer
58 views

Can I have a unique MFA for different Azure Subscriptions with one Tenant?

Currently I am looking at a configuration of a single Azure Tenant with multiple Subscriptions. Prod and non-Prod resources are separated by Subscriptions. I am looking to understand how I could ...
Steven K7FAQ's user avatar
0 votes
0 answers
451 views

In windows 10 how do I allow users to set up windows hello fingerprint?

I have a windows organization for which I'm the administrator. The users are registered to an Azure active directory which is managed with Intune. When I set up the computer I first sign in with my ...
jimboweb's user avatar
  • 129
0 votes
0 answers
2k views

Wrong 'executing account name' on Azure AD joined machines (Windows 11, Autopilot)

Currently we have 'Azure AD Domain Services' activated in our tenant, which is a managed AD through Azure. Data is being synchronised between Azure and the managed AD. We're preparing to migrate away ...
Codemeister's user avatar
0 votes
1 answer
1k views

Active Directory Sync: Change user's UPN

How do I reconfigure Azure AD sync, used for making single-sign-on possible for Office365 from inside the domain, so that the domain name part of a user's UPN can change when synchronized? E.g. assume ...
aphid's user avatar
  • 139
0 votes
1 answer
111 views

Azure VM Restore snapshot to same AD

I need to restore a Azure VM snapshot backup of a VM and keep them both in the same AD. The DC is on the same subnet also in Azure. When restoring, the windows computername on the restored server will ...
Andreas's user avatar
  • 309
0 votes
1 answer
73 views

Deploying Windows Server AD DS as IaaS (VM) in Azure?

I'm currently seeking some advice and guidance whether deploying additional Windows Server 2019 VM in Azure to run Active Directory Domain Controller / Global Catalog in separate AD sites called '...
Senior Systems Engineer's user avatar
1 vote
1 answer
125 views

Azure Active Directory Domain Services (AD DS) change permissions on ADSI Containers without Enterprise / Domain Admin Rights

I need to modify access rights in Azure Active Directory Domain Services (AD DS) for a specific container in ADSI. Usually in an on-prem Active Directory this is possible with having the correct ...
Chris's user avatar
  • 11
0 votes
1 answer
55 views

Local windows clients can't reach Azure IaaS Domain Controller

At work, we wanted to migrate our domain controller to an azure VM. Azure AD and Azure AD DS doesn't fulfill our needs. Like GPO etc.. Well, let's say : I had 3 windows clients : CL1 (win10), CL2(...
LightGFX's user avatar
0 votes
1 answer
31 views

when setting up active directory do I need to use a domain such as egglighting.com or can i just do something like EGG.DNS

Im setting up a new AD configuration in my work due to them previously not having one. I can get the intiial install of ad and promote it to a domain controller just fine I am jsut wondering how the ...
Billy Wotherspoon's user avatar
-1 votes
1 answer
46 views

how we can generate the single sign on and reply url for new application in azure active directory

I am going to register a new application in the Azure active directory for SAML login. How can I generate my reply URL and single sign on url and entity ID ?
user618241's user avatar
1 vote
1 answer
1k views

AD Connect: No sync errors but Azure shows no sync

Problem I am trying to use AD connect to sync a set of filtered users to Azure from an on-premise environment which has never been set up as a hybrid before. AD connect is showing a successful sync in ...
Rhys's user avatar
  • 27
-2 votes
1 answer
27 views

azure AD connect certicate [closed]

I am configuring SSO through Azure AD Connect and an Oracle app, I could not find the appropriate certificate to include it in the wallet. Can someone help me with a download link please. Thanks a lot
Carlos Codriansky's user avatar
0 votes
1 answer
3k views

How to get a list of groups and group memberships in Azure?

How can I get a list of all the groups and undergroups that a user is member of? Or how can I search for a specific undergroup? Nayone who knows of a command for this?
hello88's user avatar
  • 11
0 votes
1 answer
179 views

How Reset Desktop password using Azure self service password reset?

We have hybrid Network and 75% of users are available on O365 joined and 25% users are still using on premise active directory and exchange emails. With covid pandemic, All employees are working from ...
serverAdmin123's user avatar
0 votes
0 answers
39 views

I cannot delete a "Azure Domain-Services"-Ressource

we have the problem that we are not able to delete our "Azure AD Domain Services"-Domain. Here you can see the current state: Error-Screenshot when we try to delete it, we get following ...
Leon Beyer's user avatar
0 votes
1 answer
1k views

Can't login with email after joining Windows 10 device to Azure Active Directory

I'm trying to join my company's Windows 10 devices to our Azure Active Directory. I go through the setup wizard detailed here and I don't run into any issues until I attempt to log in to Windows with ...
Dillon Miller's user avatar
0 votes
1 answer
55 views

Are Their Possible Implications Joining Servers to Active Directory at a Later Point in Time?

We are currently migrating our servers to Azure. As of now, we have succesfully migrated our web server (IIS) and our database server (SQL Server). Next year our company will extend the domain ...
Tom el Safadi's user avatar
0 votes
2 answers
119 views

On-Premise Active Directory to Microsoft 365 Azure AD

We are trying to synchronise our on-premises AD with Azure Active Directory for Microsoft 365. I just want to confirm: If users on-premises have the same username as their Microsoft 365 username, ...
user587800's user avatar
0 votes
0 answers
41 views

Azure Active Directory Domain Services - Access to Resources in On-Prem Active Directory

Our current infrastructure uses on-prem active directory which synchronizes to Azure using AD Connect. The plan is to also add Azure Active Directory Domain Services in addition to this. From what I ...
RLBChrisBriant's user avatar
0 votes
1 answer
536 views

Remote Desktop across internet to AzureAD machine

I am trying to connect to another computer using remote desktop. Both are physical computers connected to our work account (office 365). Both device are joined to the same AzureAD tenant. They both ...
Al Grant's user avatar
  • 133
0 votes
3 answers
296 views

AD => Azure sync for MS Teams access. License required?

We use on-premise Exchange for compliance reasons. We have users that want to use MS teams, though, and because I set up an o365 account as a test years ago, Microsoft's o365 account focus makes it ...
Daemach's user avatar
  • 101
0 votes
1 answer
75 views

What is Microsofts intention regarding centralized access control, flattening Active Directory in Azure?

SF: You should only ask practical, answerable questions based on actual problems that you face. Forwarding: This question may be debatable regarding the answerable-part. However, for me this is an ...
dfuchs's user avatar
  • 109
2 votes
2 answers
331 views

Error while using template for vm domain join

I'm trying to use below template to add VM to domain in Azure. https://raw.githubusercontent.com/Azure/azure-quickstart-templates/master/201-vm-domain-join-existing/azuredeploy.json (template: ...
Rauf's user avatar
  • 249
0 votes
0 answers
240 views

How to delete custom domains from Azure AD

I'm trying to register a custom domain in my Azure Active Directory, but, when I try to verify this domain, it says that my domain already been using by another Azure AD or Office 365. We do not have ...
Andy Schmitt's user avatar
0 votes
1 answer
316 views

On-Prem AD to Azure AD Sync with existing users in both

I have an on-prem active directory domain called xyzcorp.com. I also have an Azure AD domain called xyzcorp.com. The two are not synchronized at the moment. What I want to be able to do is enable ...
Eugene S.'s user avatar
0 votes
0 answers
39 views

New Domain: Cannot synchronize new domain way after 72 hour tenant window has closed

We have a tenant: im-one.com, which behind the scenes has changed its internal active directory. We tore down the old domain, disconnected the old domain, waited the requisite 72 hours, and still ...
Jim Jeremiah's user avatar
0 votes
1 answer
1k views

Using Azure AD users as Service Credentials on on-premises Windows Server

Is it possible credentials from Azure AD to configure a Service on Windows? This account would also access a SQL Server instance on another machine and run commands. Assuming there's no on-premises ...
Carbon's user avatar
  • 51
0 votes
1 answer
2k views

Maximum expiration date of an Azure Service Principal credential password?

If you assign a Azure AD Service Principal to Azure (e.g. Azure Container Registry), what is the maximum expiration date of the credential password for that service principal? Is it 1 year? Can you ...
A X's user avatar
  • 469
0 votes
0 answers
275 views

Disable Azure AD Sync

I deleted my Active Directory home lab and forgot to disable Azure Active Directory Synchronization on teh server before I deleted it. I keep getting emails about an unhealthy synchronization, but I ...
Sienna's user avatar
  • 101
0 votes
1 answer
267 views

Azure VM cannot join domain controller

I have setup a VM that is configured to be a Domain Controller and a second VM that I want to join to this Domain Controller. Both VM's are in the same Vnet with an Azure Private DNS Zone connected to ...
MattyD's user avatar
  • 1
0 votes
1 answer
2k views

Azure Windows VM restore to new copy from backup when PC joined to domain

I have a VM that is running in Azure, and joined to our domain (also in Azure). I need to restore a copy of this VM to a new machine, however because the computer is joined to domain I have issues ...
George's user avatar
  • 1
0 votes
2 answers
3k views

Migrate an on-prem AD DL Group to Pure Office 365 DLs

Can anyone advise if there is a way to migrate on-prem AD groups to pure Office 365. In our environment we have a hybrid configuration which uses AD Sync to synchronize ad objects to Azure. So we ...
RLBChrisBriant's user avatar