Office 365 – Azure AD User Showing as ‘Guest’

GlenV 21 Reputation points
2020-03-17T14:10:22.143+00:00

Hello,

We have one user who is listed in Azure AD (O365 tenant) as a ‘guest’ with ‘multiple’ sources of authority and this is different to everybody else in our directory.

4731-ad.png

4741-authority.png

Is there anything I can change/configure so that this user only has the ‘Windows Server AD’ source of authority synced from our local AD via 'Azure AD Connect'?

Any help gratefully received.

Kind regards,

Glen

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,389 questions
0 comments No comments
{count} votes

Accepted answer
  1. Jan Ketil Skanke 96 Reputation points MVP
    2020-03-17T14:43:48.007+00:00

    You will probably not be able to delete the user if it is also a synced user. To clean this up I recommend that you remove the user from your Azure AD Sync scope, allow the user to be deleted from AAD on the next sync. Verify after that if the user is still there, but now only with Microsoft Account as authority. Now delete it, and remove from Deleted users too.
    Put user back in sync scope and verify that the user is back in the cloud.

    Also it is possible to change a user programaticly from Guest to Member, but that would probably not fix this issue.


1 additional answer

Sort by: Most helpful
  1. Vasil Michev 94,911 Reputation points MVP
    2020-03-17T14:39:02.227+00:00

    I'm not sure whether you can remove a "source of authority". But you can always delete the user and let it resync from AD.

    0 comments No comments