Hello,
I am trying to join my Server to Azure Active Diretory. But I am unable to configure AAD Connect Provisioning Agent.
I need your helps.
[01:22:54.057] [ 1] [INFO ]
[01:22:54.057] [ 1] [INFO ] ================================================================================
[01:22:54.057] [ 1] [INFO ] Application starting
[01:22:54.057] [ 1] [INFO ] ================================================================================
[01:22:54.057] [ 1] [INFO ] Start Time (Local): Wed, 30 Nov 2022 01:22:54 GMT
[01:22:54.057] [ 1] [INFO ] Start Time (UTC): Wed, 30 Nov 2022 09:22:54 GMT
[01:22:54.057] [ 1] [INFO ] Application Version: 1.1.977.0
[01:22:54.057] [ 1] [INFO ] Application Build Date: 1957-12-09 14:48:39Z
[01:22:54.057] [ 1] [INFO ] Application Build Identifier: AD-ProvisioningAgent master (f1e21a197e7026e76c5c0578f73b996a37503c6f) Microsoft Azure®
[01:22:54.322] [ 1] [INFO ] Registry flag 'UseAdalAuthentication' set to 'False'. Using MSALAuthenticationProvider for AzureAuthentication.
[01:22:55.853] [ 1] [INFO ] IsServiceAccountGMSA:: Checking if service account is gmsa
[01:22:55.853] [ 1] [INFO ] Get current service credentials.
[01:22:55.993] [ 1] [INFO ] IsServiceAccountGMSA:: Service account: NT SERVICE\AADConnectProvisioningAgent is not gmsa. SamAccountName does not end with '$'.
[01:22:59.010] [ 1] [INFO ] ConfigureAzureActiveDirectoryPageViewModel:Launching Login form.
[01:22:59.010] [ 9] [INFO ] Authenticate-MSAL: acquiring token using interactive authentication.
[01:22:59.041] [ 9] [INFO ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:22:59.04 - a22f4b11-b93c-449a-aee2-40d0b9073f77] MSAL MSAL.Desktop with assembly version '4.36.0.0'. CorrelationId(a22f4b11-b93c-449a-aee2-40d0b9073f77)
[01:22:59.072] [ 9] [INFO ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:22:59.07 - a22f4b11-b93c-449a-aee2-40d0b9073f77] === InteractiveParameters Data ===
LoginHint provided: False
User provided: False
UseEmbeddedWebView: NotSpecified
ExtraScopesToConsent:
Prompt: select_account
HasCustomWebUi: False
[01:22:59.088] [ 9] [INFO ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:22:59.08 - a22f4b11-b93c-449a-aee2-40d0b9073f77]
=== Request Data ===
Authority Provided? - True
Scopes - https://proxy.cloudwebappproxy.net/registerapp/user_impersonation
Extra Query Params Keys (space separated) -
ApiId - AcquireTokenInteractive
IsConfidentialClient - False
SendX5C - False
LoginHint ? False
IsBrokerConfigured - False
HomeAccountId - False
CorrelationId - a22f4b11-b93c-449a-aee2-40d0b9073f77
[01:22:59.088] [ 9] [INFO ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:22:59.08 - a22f4b11-b93c-449a-aee2-40d0b9073f77] === Token Acquisition (InteractiveRequest) started:
Scopes: https://proxy.cloudwebappproxy.net/registerapp/user_impersonation
Authority Host: login.windows.net
[01:22:59.088] [ 9] [INFO ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:22:59.08 - a22f4b11-b93c-449a-aee2-40d0b9073f77] [Region discovery] Azure region was not configured or could not be discovered. Not using a regional authority.
[01:22:59.104] [ 9] [INFO ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:22:59.10 - a22f4b11-b93c-449a-aee2-40d0b9073f77] Fetching instance discovery from the network from host login.windows.net.
[01:22:59.447] [ 11] [INFO ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:22:59.44 - a22f4b11-b93c-449a-aee2-40d0b9073f77] Authority validation enabled? True.
[01:22:59.447] [ 11] [INFO ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:22:59.44 - a22f4b11-b93c-449a-aee2-40d0b9073f77] Authority validation - is known env? True.
[01:22:59.447] [ 11] [INFO ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:22:59.44 - a22f4b11-b93c-449a-aee2-40d0b9073f77] Using legacy embedded browser.
[01:23:18.717] [ 13] [INFO ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:23:18.71 - a22f4b11-b93c-449a-aee2-40d0b9073f77] [Legacy WebView] Redirect URI was reached. Stopping WebView navigation...
[01:23:18.939] [ 5] [INFO ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:23:18.93 - a22f4b11-b93c-449a-aee2-40d0b9073f77] An authorization code was retrieved from the /authorize endpoint.
[01:23:18.939] [ 5] [INFO ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:23:18.93 - a22f4b11-b93c-449a-aee2-40d0b9073f77] Exchanging the auth code for tokens.
[01:23:18.939] [ 5] [INFO ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:23:18.93 - a22f4b11-b93c-449a-aee2-40d0b9073f77] === InteractiveParameters Data ===
LoginHint provided: False
User provided: False
UseEmbeddedWebView: NotSpecified
ExtraScopesToConsent:
Prompt: select_account
HasCustomWebUi: False
[01:23:19.572] [ 11] [INFO ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:23:19.57 - a22f4b11-b93c-449a-aee2-40d0b9073f77] Response status code does not indicate success: 400 (BadRequest).
[01:23:19.572] [ 11] [WARN ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:23:19.57 - a22f4b11-b93c-449a-aee2-40d0b9073f77] Request retry failed.
[01:23:19.572] [ 11] [INFO ] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:23:19.57 - a22f4b11-b93c-449a-aee2-40d0b9073f77] HttpStatusCode: 400: BadRequest
[01:23:19.572] [ 11] [ERROR] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:23:19.57 - a22f4b11-b93c-449a-aee2-40d0b9073f77] Exception type: Microsoft.Identity.Client.MsalUiRequiredException
, ErrorCode: invalid_grant
HTTP StatusCode 400
CorrelationId a22f4b11-b93c-449a-aee2-40d0b9073f77
[01:23:19.572] [ 11] [ERROR] MSAL: False MSAL 4.36.0.0 MSAL.Desktop 4.8 or later Windows Server 2022 Datacenter [11/30 09:23:19.57 - a22f4b11-b93c-449a-aee2-40d0b9073f77] Exception type: Microsoft.Identity.Client.MsalUiRequiredException
, ErrorCode: invalid_grant
HTTP StatusCode 400
CorrelationId a22f4b11-b93c-449a-aee2-40d0b9073f77
at Microsoft.Identity.Client.OAuth2.OAuth2Client.ThrowServerException(HttpResponse response, RequestContext requestContext)
at Microsoft.Identity.Client.OAuth2.OAuth2Client.CreateResponse[T](HttpResponse response, RequestContext requestContext)
at Microsoft.Identity.Client.OAuth2.OAuth2Client.<ExecuteRequestAsync>d__11`1.MoveNext()
--- End of stack trace from previous location where exception was thrown ---
at System.Runtime.ExceptionServices.ExceptionDispatchInfo.Throw()
at System.Runtime.CompilerServices.TaskAwaiter.HandleNonSuccessAndDebuggerNotification(Task task)
at Microsoft.Identity.Client.OAuth2.OAuth2Client.<GetTokenAsync>d__10.MoveNext()
--- End of stack trace from previous location where exception was thrown ---
at System.Runtime.ExceptionServices.ExceptionDispatchInfo.Throw()
at System.Runtime.CompilerServices.TaskAwaiter.HandleNonSuccessAndDebuggerNotification(Task task)
at Microsoft.Identity.Client.OAuth2.TokenClient.<SendHttpAndClearTelemetryAsync>d__10.MoveNext()
--- End of stack trace from previous location where exception was thrown ---
at System.Runtime.ExceptionServices.ExceptionDispatchInfo.Throw()
at Microsoft.Identity.Client.OAuth2.TokenClient.<SendHttpAndClearTelemetryAsync>d__10.MoveNext()
--- End of stack trace from previous location where exception was thrown ---
at System.Runtime.ExceptionServices.ExceptionDispatchInfo.Throw()
at System.Runtime.CompilerServices.TaskAwaiter.HandleNonSuccessAndDebuggerNotification(Task task)
at Microsoft.Identity.Client.OAuth2.TokenClient.<SendTokenRequestAsync>d__5.MoveNext()
--- End of stack trace from previous location where exception was thrown ---
at System.Runtime.ExceptionServices.ExceptionDispatchInfo.Throw()
at System.Runtime.CompilerServices.TaskAwaiter.HandleNonSuccessAndDebuggerNotification(Task task)
at Microsoft.Identity.Client.Internal.Requests.InteractiveRequest.<GetTokenResponseAsync>d__11.MoveNext()
--- End of stack trace from previous location where exception was thrown ---
at System.Runtime.ExceptionServices.ExceptionDispatchInfo.Throw()
at System.Runtime.CompilerServices.TaskAwaiter.HandleNonSuccessAndDebuggerNotification(Task task)
at Microsoft.Identity.Client.Internal.Requests.InteractiveRequest.<ExecuteAsync>d__8.MoveNext()
--- End of stack trace from previous location where exception was thrown ---
at System.Runtime.ExceptionServices.ExceptionDispatchInfo.Throw()
at System.Runtime.CompilerServices.TaskAwaiter.HandleNonSuccessAndDebuggerNotification(Task task)
at Microsoft.Identity.Client.Internal.Requests.RequestBase.<RunAsync>d__12.MoveNext()
[01:23:19.588] [ 9] [ERROR] Authenticate-MSAL: unexpected authentication failure [invalid_grant] - AADSTS500202: User account '{EmailHidden}' from external identity provider 'live.com' is not supported for API version '2.0'. Microsoft account pass-thru users and guests are not supported by the tenant-independent endpoint.
Trace ID: e4316e19-b5ea-4771-8efc-7c4129ff0e00
Correlation ID: a22f4b11-b93c-449a-aee2-40d0b9073f77
Timestamp: 2022-11-30 09:23:19Z.
[01:23:19.588] [ 9] [INFO ] ConfigureAzureActiveDirectoryPageViewModel:Authentication exception - AADSTS500202: User account '{EmailHidden}' from external identity provider 'live.com' is not supported for API version '2.0'. Microsoft account pass-thru users and guests are not supported by the tenant-independent endpoint.
Trace ID: e4316e19-b5ea-4771-8efc-7c4129ff0e00
Correlation ID: a22f4b11-b93c-449a-aee2-40d0b9073f77
Timestamp: 2022-11-30 09:23:19Z
[01:23:19.713] [ 1] [ERROR] A terminating unhandled exception occurred.
Exception Data (Raw): System.FormatException: Input string was not in a correct format.
at System.Text.StringBuilder.FormatError()
at System.Text.StringBuilder.AppendFormatHelper(IFormatProvider provider, String format, ParamsArray args)
at System.String.FormatHelper(IFormatProvider provider, String format, ParamsArray args)
at System.String.Format(IFormatProvider provider, String format, Object[] args)
at Microsoft.Online.Deployment.Framework.UI.Controls.TextBlock.DynamicTextBlock.DynamicTextBlockDataContextChanged(Object sender, DependencyPropertyChangedEventArgs e)
at System.Windows.FrameworkElement.RaiseDependencyPropertyChanged(EventPrivateKey key, DependencyPropertyChangedEventArgs args)
at System.Windows.FrameworkElement.OnDataContextChanged(DependencyObject d, DependencyPropertyChangedEventArgs e)
at System.Windows.DependencyObject.OnPropertyChanged(DependencyPropertyChangedEventArgs e)
at System.Windows.FrameworkElement.OnPropertyChanged(DependencyPropertyChangedEventArgs e)
at System.Windows.DependencyObject.NotifyPropertyChange(DependencyPropertyChangedEventArgs args)
at System.Windows.DependencyObject.UpdateEffectiveValue(EntryIndex entryIndex, DependencyProperty dp, PropertyMetadata metadata, EffectiveValueEntry oldEntry, EffectiveValueEntry& newEntry, Boolean coerceWithDeferredReference, Boolean coerceWithCurrentValue, OperationType operationType)
at System.Windows.DependencyObject.InvalidateProperty(DependencyProperty dp, Boolean preserveCurrentValue)
at System.Windows.Data.BindingExpressionBase.Invalidate(Boolean isASubPropertyChange)
at System.Windows.Data.BindingExpression.TransferValue(Object newValue, Boolean isASubPropertyChange)
at MS.Internal.Data.PropertyPathWorker.UpdateSourceValueState(Int32 k, ICollectionView collectionView, Object newValue, Boolean isASubPropertyChange)
at MS.Internal.Data.PropertyPathWorker.RefreshValue()
at MS.Internal.Data.ClrBindingWorker.ScheduleTransferOperation(Object arg)
at MS.Internal.Data.DataBindEngine.ProcessCrossThreadRequests()
at System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs)
at System.Windows.Threading.ExceptionWrapper.TryCatchWhen(Object source, Delegate callback, Object args, Int32 numArgs, Delegate catchHandler)
[01:23:25.354] [ 1] [INFO ] Opened log file at path C:\ProgramData\Microsoft\Azure AD Connect Provisioning Agent\Trace\trace-wizard-20221130-012253.log