Microsoft AAD authentication
Hi, I want to give access to a selected users from AAD. Say there are 100 users in AAD - but I want to give access to only 24 selected users. I created a group for this in AAD. But even after giving...
View ArticleReasons to use AD instead of Azure AD?
What are the main reasons to not use Azure AD?The ones I can think of are for managing desktop PCs and servers etc.SCCM requires local AD.Enterprise PKI requires local AD.Centrally managing Windows...
View ArticleGraph API route for determining if a user has enrolled for MFA, and by what...
We have users with Azure AD Premium (P1) licenses, and MFA status on account will remain Disabled (not Enabled or Enforced) but rather we will use the Conditional Access policies in specific...
View ArticleDelete b2c-extension-app and can not restore
Hi,I was trying to delete my b2c tenant and now can not access my azure b2c. Tried restoring as per documentation but received.Selected user account does not exist in tenant 'graphExplorerMT' and...
View ArticleAzure AAD Connect Failing on Syncronisation
Hi All,Trying to setup a new AAD Connect on a DC using the administrator (tried other enterprise admin accounts as well) Logs as follows. I have xxx out the domain [17:55:20.239] [ 1] [INFO ]...
View ArticleUser gets Different SID When Logging in to AAD Joined Machine
We use O365, and for the last year have a local AD server that is sync'ed to AAD via Azure AD Connect. All works as it should.We're doing a trial of AAD Premium, and decided to try joining local...
View Articleis the data stored in Azure Redis cache available for multiple instances of...
Hello, In case of scaling out an application is the data stored in Azure Redis cache available for multiple instances of the same api/web app? Regards,Snehal
View Articleaudience in an access token to be app uri id
I have a web API and when I fetch an access token for it, using MSAL.js, the <g class="gr_ gr_75 gr-alert gr_spell gr_inline_cards gr_run_anim ContextualSpelling" data-gr-id="75"...
View ArticleResource Owner Password Credential - invalid grant - AADSTS50126: Invalid...
Hello,I'm trying to test ROPC with a native application and my username and pasword (just for test) ... but always get back the error above even if those are credentials I'm using every day to get...
View ArticleNo refresh_token returned via OAuth 2.0 code grant flow
I am attempting an OAuth 2.0 code grant flow via electron native desktop client, using PKCE method to I am following the medium article titled: "Azure AD OAuth 2.0 Authorization Code Grant Flow in...
View ArticleAzure AD Connect password sync issue on specific forest
HiWe have Azure AD connect (1.2.7) installed, and it's syncing user accounts and password hashes to 5 different domains more or successfully. We do not use password writeback.We have added a further...
View ArticleHow to get the group information of a user in SAML token
I have a setup with Azure as IDP and Weblogic as SP. I am able to get the user information in the SAML token and SSO is successful, However, I am not able to get the group this user belongs to (as a...
View ArticleAD Application was not found in the AD B2C directory
Hello,I was following this tutorial docs.microsoft.com/en-us/azure/active-directory-b2c/tutorial-add-identity-providers but when i go to test it i get the following message:Application with identifier...
View Articleget-azureaduser or get-msoluser - unable to query msExchHideFromAddressLists
We are in Exchange Hybrid mode. I have a need to query the property msExchHideFromAddressLists using get-msoluser or get-azureaduser. I checked Azure Ad Connect and the property setup to sync. If I...
View ArticleAD Connect Multiple Forest SSO
Trying to figure out how to deploy SSO into a web application for the following scenario.Domain A (contoso.local): Syncing identities to Azure via adconnect and leveraging pass-through authentication...
View ArticleAzure AD Identity Protection
I am trying to "onboard" Azure AD Identity Protection. I invoked the Azure AD P2 trial and assigned the licence to my user account. When I look in O365 as well as Azure, it shows the license to be...
View ArticleAzure AD Connect Health Sync Insights Service service terminating frequently !
We are using Azure AD Connect version 1.2.70.0. Recently we had noticed that Azure AD Connect Health Sync Insights Service is getting terminated frequently since the memory utilization exceeds...
View ArticleMFA external accounts for Azure
I'm looking to setup MFA for external accounts that are granted access to my organizations Teams channel. Is this a possibility?
View ArticleRemove Additional Security Verification when joining Azure AD
I have MFA disabled on AzureAD and on o365 portal for any users. However when user joins PC to AzureAD it asks for Additional Security VerificationAny suggestions how to turn this off for newly...
View ArticleUsers may register their devices in Azure AD is greyed out - WHY?
I am struggling to register devices to the Azure Ad through windows 10 pro. When trying to access the work/school sign on option I get a 'something went wrong error 80072ee2'. Please help...
View Article