Restrict admins access to users under certain domains in Azure multi-tenant

AA-ron 20 Reputation points
2023-03-06T05:03:37.2133333+00:00

Hello all. I administer a multi-tenant Azure AD. I would like to restrict certain admins to certain domains, at least to their own domain. In legacy AD I would move users to an OU and assign delegation from there. Is there an equivalent solution in Azure?

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
23,651 questions
{count} votes

Accepted answer
  1. Vasil Michev 115.3K Reputation points MVP
    2023-03-06T06:43:09.06+00:00

    There are no domain-based restrictions in Azure AD. What you can use are Administrative units, think of them as the analog of OUs: https://learn.microsoft.com/en-us/azure/active-directory/roles/administrative-units

    1 person found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.