Force Tenant-Synced Users as Guest?

Jeremy 141 Reputation points
2023-09-20T17:43:07.88+00:00

I am reviewing the features of B2B Tenant Sync and read here: https://learn.microsoft.com/en-us/azure/active-directory/multi-tenant-organizations/cross-tenant-synchronization-configure#step-9-review-attribute-mappings
that the source tenant gets to dictate the UserType for the user in the target recieving tenant.

Is there a way for the target recieving tenant to dictate or override the setting set by the source? We were looking at this option as a potential way to pre-confgure guests and have them persent in the GAL, but I don't think we're interested in these users being members.

Microsoft Security | Microsoft Entra | Microsoft Entra External ID
0 comments No comments
{count} votes

Accepted answer
  1. Marilee Turscak-MSFT 37,206 Reputation points Microsoft Employee Moderator
    2023-09-20T22:11:39.7766667+00:00

    Hi @Jeremy ,

    There isn't a way to define or override the userType based on the target tenant. As mentioned in the guide that you linked, you can set the Constant Value setting for the userType in the source tenant to define the type of user that will be created in the target tenant. And if you already have a user created in the target tenant, the user type will not change unless Apply this mapping setting is set to Always.

    If you want to pre-configure the users as guests, you can set the UserType to "Guest" instead of "Member" in the source tenant.

    https://learn.microsoft.com/en-us/azure/active-directory/multi-tenant-organizations/cross-tenant-synchronization-configure


0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.