Is a P1/P2 Entra ID license per user or per tenant?
I am reading various articles about Microsoft cloud security features. Many of them list having a Entra ID P1 / P2 license as a prerequisite. But I am unclear on exactly what that means. On the Azure portal, the "All Services > Licenses"…
Local Admin account forced to change password, after joined to Azure AD
After joining a device to Azure AD for the first time through a work or school account. Ive noticed that the local user account (who is an admin) is forced to restart their password at next sign in. I cant find anywhere in azure or intune that would be…
block Azure AD Registered in Azure AD
Hi, Is there a way to block personal devices for any corporate user try to register in Azure AD Only. We are not talking about Intune enrollment here, only way to block Azure AD Registered thanks SM
JDBC connection from on-prem App to Azure SQL DB using ActiveDirectoryIntegrated Auth not working
I am trying to connect an on-prem application (SonarQube) with an Azure managed SQL DB. The connection uses JDBC, and I am using JDBC v12.2.0. This works using a SQL User and password, but does not work with Authentication=ActiveDirectoryIntegrated. The…
AZUREADSSOACC Key Rollover no longer works using Hybrid Identity Administrator creds
Hi I use a PowerShell script in an Azure Hybrid Worker Runbook to automate the rollover of the Kerberos decryption key for the AZUREADSSOACC computer account. It uses a service account in Entra ID which is assigned the Hybrid Identity Administrator…
Unable to Authenticate Azure file share with on-premises active directory users.
I have enabled ADDS authentication for my storage account. I did this by setting up an on-premise Active Directory on one of my Azure VMs and providing Storage File Data SMB Share Elevated Contributor access to the file share. Now, I am able to mount the…
Azure App registration Client secret expiration
I'm using Azure AD B2C to handle the authentication in some Azure Functions. I've been using the client secret approach (as explain in the documentation) to configure the Azure App. However the client secret has a expiration date (maximum of 2 years,…
Mg Graph Sign-In logs showing data more than 30 days older
Hi folks, Hope you are doing well! I'm using a PowerShell script based on MG Graph module to get the last sign-in date of all users. PS script: Now as specified here Azure AD only stores Sign-ins data until 30 days in P2 license, but in the result of…
Your subscription offer, Access to Azure Active Directory, will be disabled on May 16, 2024
Hello! what does it mean? We currently have: Enter ID Free (Business Basic and Business STD) and Entra ID Plan 1 (Business Premium) We do not know what the following email message that we received refers to. **"**Access to Azure Active Directory…
Error enabling SSO for Zendesk
Has anyone else been able to get SSO working with Zendesk and Entra/Azure? I've followed the instructions several times, but keep getting: Request Id: 2a544d1b-70be-4981-be0c-9a30d2886f00 Correlation Id: 7495218c-b173-4a11-a6a9-1ba4699e4e89 Timestamp:…
Authorization Issue with Azure App Configuration API
I'm encountering an authorization problem while attempting to perform actions on the Azure App Configuration API. The error message I'm receiving is: The client '5301c929-b34c-4022-a5a2-c3b5e4a29bdc' with object id '5301c929-b34c-4022-a5a2-c3b5e4a29bdc'…
Why does Cloud Sync Review and enable show Scoping filters set to All users?
I'm setting up Cloud Sync and set my Scoping filters to "Selected organizational units". The Distinguished name of my test organizational unit has been saved in the configuration, but when I go to Review and enable cloud sync it shows Object…
How to migrate mail from mdaemon to office 365
Dear team, My client want to migrate mail service from MDaemon to Office 365. With existing environtment have active directory windows server 2012 that sync with mdaemon and sso they don't want to upgrade active directory for now and expect they will…
Inquiry Regarding Azure AD Support for Signed Logout Response and Certificate Usage
I am writing to inquire about the support and configuration details related to the Single Logout (SLO) functionality in Azure Active Directory (Azure AD). Specifically, I would like to confirm whether Azure AD supports Signed Logout Response as part…
Entra Hybrid join error
Hello, I'm trying to deploy Entra Hybrid AD join for a company and on our devices the following error occur: (The devices in Entra remain "Entra registered") I used DSRegTool but it only said that my device is not in local domain but it is…
Unable to access Entra ID on the azure Portal
I have created a free account and have a subscription to play with Azure. However, I can not access Entra ID blade... What should I do ? Where can I get more details about this issue ???
Why conditional access policies not applied when try to sign in app in app registration in azure?
I am integrating Azure AD and ISE 3.2 patch 5 version. Using azure credentials authentication and authorization was successful from ISE user was identified by their group. (Here when user is connected to SSID using azure login credential user will be…
windows logon with CBA
Hello, As we know, we can do windows device logon with "Certificate based authentication" Microsoft Entra users can authenticate using X.509 certificates on their smart cards directly against Microsoft Entra ID at Windows sign-in. To be…
Azure AD/Entra ID Access Package The model is invalid error
I get this error when creating an access package in Azure AD. I've created many access packages before with the same settings as the one I'm creating now but this one fails. Could this be a new bug?
Primary domain - change the name
Hello, I have created a Microsoft Azure account. My question is, can I change the name of the Primary domain (Default Directory)