How do I change the account lockout settings for Azure GovCloud accounts?

Robin Wilson 20 Reputation points
2023-12-12T00:53:06.5933333+00:00

All of the documentation (and even discussions I've found online) tell me how to change the account lockout settings for the Azure Public cloud. But I can't find anywhere that I can adjust the setting for Azure GovCloud (or even see what they are set to). I have a user who was trying to login to his account, and hit the limit and got locked out. (It wasn't his fault, we have been migrating from a local Domain Controller for Active Directory to Azure Active Directory (AAD) - and it somehow dorked up his account today.)

I'd really like to just reset his account so it isn't locked out anymore - but it appears I can't do that either. And because our GovCloud AD is linked to our company AAD (now) he can't use Self-Service Password Reset (SSPR) from GovCloud. (We already reset his password from our AAD setup.)

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
24,939 questions
{count} votes

Accepted answer
  1. Akhilesh Vallamkonda 15,235 Reputation points Microsoft External Staff Moderator
    2023-12-20T07:22:27.58+00:00

    Hi @Robin Wilson
    I'm glad that you were able to resolve your issue and thank you for posting your solution so that others experiencing the same thing can easily reference this! Since the Microsoft Q&A community has a policy that "The question author cannot accept their own answer. They can only accept answers by others (Opens in new window or tab)", I'll repost your solution in case you'd like to "Accept (Opens in new window or tab)" the answer.

    Issue:

    All of the documentation (and even discussions I've found online) tell me how to change the account lockout settings for the Azure Public cloud. But I can't find anywhere that I can adjust the setting for Azure GovCloud (or even see what they are set to). I have a user who was trying to login to his account and hit the limit and got locked out. (It wasn't his fault we have been migrating from a local Domain Controller for Active Directory to Azure Active Directory (AAD) - and it somehow dorked up his account today.) I'd really like to just reset his account so it isn't locked out anymore - but it appears I can't do that either. And because our GovCloud AD is linked to our company AAD (now) he can't use Self-Service Password Reset (SSPR) from GovCloud. (We already reset his password from our AAD setup.)

    Solution:

    The issue is resolved by disconnected the Azure GovCloud Entra ID your local AD Domain Controller and that allowed you to reset passwords/accounts to get them logging in again.

    If you have any other questions or are still running into more issues, please let me know.
    Thank you again for your time and patience throughout this issue.

    Thanks,
    Akhilesh.

    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.


1 additional answer

Sort by: Most helpful
  1. Robin Wilson 20 Reputation points
    2023-12-19T15:50:30.2566667+00:00

    This problem has essentially been resolved. We disconnected the Azure GovCloud Entra ID from our local AD Domain Controller and that allowed us to reset passwords/accounts to get them logging in again.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.