There are no domain-based restrictions in Azure AD. What you can use are Administrative units, think of them as the analog of OUs: https://learn.microsoft.com/en-us/azure/active-directory/roles/administrative-units
Restrict admins access to users under certain domains in Azure multi-tenant
AA-ron
20
Reputation points
Hello all. I administer a multi-tenant Azure AD. I would like to restrict certain admins to certain domains, at least to their own domain. In legacy AD I would move users to an OU and assign delegation from there. Is there an equivalent solution in Azure?