Unable to retrieve Azure Active Directory Configuration message.

Denis Adshead 25 Reputation points
2024-02-27T15:51:07.7866667+00:00

I am trying to migrate Azure AD Connect up from v1.6 as it is out of date. Unfortunately, the AD Server is 2012, so I need to do a Swing Migration to a new 2016 Server. However, when trying to check the Azure AD Configuration in preparation for moving to the new Server, I get the message " Unable to retrieve the azure active directory configuration." There is nothing more, other than a Learn More link that doesn't actually list this specific error. The password should be correct as we changed it, logging in as the relevant User (after some considerable pain, since the details on the O365 Admin account were all out of date). Do we need to do anything else? I have seen that we need to check that a number of links are available, such as login.microsoftonline.com and *.aadcdn.msftauth.net. Am I stupid in thinking that, if these links didn't work, the Server wouldn't be able to open the O365 login page? Because it can. How can I progress through the checks, so that I can see the current User Sign-in method, so that I can implement this on the new Server? Thank you.

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} vote

Accepted answer
  1. Akshay-MSFT 17,956 Reputation points Microsoft Employee Moderator
    2024-02-28T11:47:45.4833333+00:00

    @Denis Adshead

    From above description I could understand that you are getting error "Unable to retrieve the azure active directory configuration" when trying to get the configuration from Entra ID connect v1.6.

    Please do correct me if this is not the case by responding in the comments section.

    • AD-Connect 1.6 server is no longer working as is a retired version. You can disable the service in Windows to ensure the server is not going to export information.> - Since the version is retired and no longer working this is the reason why he can't retrieve information from Azure AD

    However, as a workaround you may try to navigate to %ProgramData%\AADConnect and see if there are any previous version of the configuration exported which could be used in new deployment.

    By default, the settings are exported to %ProgramData%\AADConnect. You also can choose to save the settings to a protected location to ensure availability if a disaster occurs. Settings are exported by using the JSON file format and should not be hand-created or edited to ensure logical consistency. Importing a hand-created or edited file isn't supported and might lead to unexpected results.


    Please "Accept the answer (Yes)" and "share your feedback ". This will help us and others in the community as well.

    Thanks,

    Akshay Kaushik

    1 person found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.