Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
450 questions
This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
Hi,
We have been experiencing a very strange behavior on some of out desktops.
They are all Azure AD Joined, managed by Itune and AD users can log in without issues.
But due to new restrictions, no user should be local admin on the joined devices.
When role is removed from the user in AAD it's not removed on the device configuration and in some cases the profile crashes and needs to be recreated on the device.
Nothing shows up in event.
Any idea is welcome.