How to sync users Azure ad sign in details with On prem ad

Ritesh Sharma 356 Reputation points
2023-09-04T08:08:23.3166667+00:00

Hi Team

We have hybrid environment. Where we are running users accounts are bring created in on prem DC and it is getting sync to Azure ad. We are running one script in AD, if any users not logged-in since 60 days. It will be disabled and move to respective OU.

Now we have many users using Azure ad join devices only and they are working from home. There is no chance they can connect to office network or VPN. So, they have no option to sync with on prem AD. We can see the difference between Azure AD and on prem AD for the sign-in detail.

is there any way, we can write back sign-in details from Azure ad to AD for users using Azure ad connect or any other way, So we continue using the script.

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,937 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
24,215 questions
{count} votes

Accepted answer
  1. JimmySalian-2011 42,371 Reputation points
    2023-09-04T09:40:42.11+00:00

    Hi Ritesh,

    As far as I know there is no way you can write back User is active or performing any activity on the AAD and write back to Onprem AD, there are some exchange attributes that I used for other project but it was oneoff for shared mailbox. IN this case you will need to update your script as this is not a solution in your scenario you are using AAD Joined device and users remotely loggin, so you need something setup in AAD instead of Onprem or tweak your onprem scrpts to accomodate this scenario - https://learn.microsoft.com/en-us/azure/active-directory/hybrid/connect/reference-connect-sync-attributes-synchronized#exchange-hybrid-writeback

    Hope this helps.

    JS

    ==

    Please accept as answer and do a Thumbs-up to upvote this response if you are satisfied with the community help. Your upvote will be beneficial for the community users facing similar issues.

    1 person found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.