Azure Active Directory Group Guest User

Florian Eber 21 Reputation points
2021-10-14T09:08:42.32+00:00

Hello Community,

i want to make group in my Azure Active Directory with only Guests. But these Guest should have access to the virtual desktops via this link:
webclient

They have to be guests, because they shouldnt be able to see all the other users in my Azure Active Directory. There is a permission to deny all access to the Azure Portal, but they still have read-only permissions via powershell command or "security-add" function.

I was able to invite a user as guest, but everytime he accepts the invite the account gets the UserType Member and also has the Member Permissions.
Is there a way to take this Member Permission away or give him the UserType Guest again?
Or is it only possible with a Member, to connect to an Azure virtual desktop from a Azure Tenant?

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,563 questions
0 comments No comments
{count} votes

Accepted answer
  1. Alan Kinane 16,786 Reputation points MVP
    2021-10-14T09:13:39.287+00:00

    Azure virtual desktop does not support guest users currently. They would need to be general users on the tenant - https://learn.microsoft.com/en-us/azure/virtual-desktop/faq#does-azure-virtual-desktop-support-guest-users-


0 additional answers

Sort by: Most helpful