Map azure file share on non domain joined device using Azure AD Kerberos

Mike Holtackers 20 Reputation points
2023-10-11T11:49:28.6566667+00:00

Can External users (Guest users in AzureAD) and internal users map an Azure File share when using Azure AD Kerberos authentication on a non-domain joined computer.

Azure Files
Azure Files
An Azure service that offers file shares in the cloud.
1,400 questions
Azure Storage Accounts
Azure Storage Accounts
Globally unique resources that provide access to data management services and serve as the parent namespace for the services.
3,465 questions
0 comments No comments
{count} votes

Accepted answer
  1. Luke Murray 11,351 Reputation points MVP
    2023-10-15T00:20:32.2+00:00

    Yes Hybrid of Entra ID joined directly:

    "Clients must be Microsoft Entra joined or Microsoft Entra hybrid joined. Microsoft Entra Kerberos isn’t supported on clients joined to Microsoft Entra Domain Services or joined to AD only.

    The accounts, need to be created on-premises though, from AD directly, so I suspect Guest AD users won't work.

    "This feature doesn't currently support user accounts that you create and manage solely in Microsoft Entra ID. User accounts must be hybrid user identities, which means you'll also need AD DS and either Microsoft Entra Connect or Microsoft Entra Connect cloud sync."

    Screenshot of the Azure portal showing Active Directory configuration settings for a storage account. Microsoft Entra Kerberos is selected.

    1 person found this answer helpful.
    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.