Route notification and email alert sent to Admin Account (no mailbox for Admin accounts) to mail enabled id's.

Rahul 236 Reputation points
2020-05-22T12:54:03.767+00:00

Hi Team,

As you know as per security best practices we are using Azure AD Admin ID's which are not having any mailbox to prevent any phishing attacks.

Now I want to know if we are using any such account how do we receive Azure AD alert and notification to our mailbox. I mean if we can get these alerts to our id's which are having mailboxes.

One more use case is if some password getting expire O365 send alert to user id 14 days before so can we configure or add our mail enabled id's so that we receive the notification on that id's.

Note: If I add mail attribute to Admin account than it might conflict with my mail enabled id.

Any suggestions here how to associate an exiting email id ( individual or DL group) to ADMIN Accounts to get notified for any Azure AD admin notifications sent to these ADMIN accounts e.g PIM notification / License renewal etc which are send out to Global admins who are not having any mailbox.

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,569 questions
{count} votes

Accepted answer
  1. Vasil Michev 95,666 Reputation points MVP
    2020-05-22T13:05:42.44+00:00

    You will receive them on the alternative email you provide as part of the provisioning process/elevating a user.

    There are no password expiration emails in Office 365, if you want to generate such, you have to use your own custom solution.


4 additional answers

Sort by: Most helpful
  1. James Heathcote ADM 6 Reputation points
    2021-01-15T16:40:16.643+00:00

    Doesnt work for us either, I don't want to licenses 365 for exchange just to get mail notifications for Azure Admin accounts when we are following best practise and not using admin accounts for email etc.

    Alternative email only seems to get used when Microsoft want to send you a bill!

    1 person found this answer helpful.

  2. Derrick Shaffer 11 Reputation points
    2021-09-13T13:18:04.767+00:00

    Microsoft needs to just add an option to send admin alerts/notifications to a distribution group.

    1 person found this answer helpful.
    0 comments No comments

  3. Derrick Shaffer 11 Reputation points
    2021-09-17T17:05:44.903+00:00

    Mail-enabled admin accounts is a bad practice. Microsoft needs to fix this.

    https://github.com/cisagov/bad-practices/discussions/14

    0 comments No comments

  4. Dhaya.Karuthedathu 0 Reputation points
    2023-05-23T06:29:29.6333333+00:00

    Is there a fix for this yet.

    0 comments No comments