After Azure AD Hard-Match, users outlook will prompt "The Microsoft Exchange administrator has made a change that requires you quit and restart Outlook" occasionally

Louis CI Lo 65 Reputation points
2024-04-17T08:02:42.14+00:00

Hi all,

I got a tenant with cloud users, they are disconnected from previous AD domain (let say abc.com).

I changed all cloud users primary domain from abc.com to xyz.com.

Then I created a new local domain AD with xyz.com, users are exactly same name with cloud users.

For example,

  • I have a user name UPN is peter@xyz.com on cloud, This user have Exchange Online Mailbox.
  • I have same UPN peter@xyz.com on local AD.

I used Entra ID connect (AAD connect) and tried to use Soft-Match (UPN and Email) but no luck, cloud will auto create an account peter231@xyz.com and it will sync with on-premise peter@xyz.com. Or got error "Duplicate Attribute".

So I used Hard-Match, which edit the ImmutableID for the cloud user peter@xyz.com, to match the same UPN account objectGUID on-premises. It successd, I can update user password on-premises and it will sync with cloud account now.

However, the user outlook will promt "The Microsoft Exchange administrator has made a change that requires you quit and restart Outlook" occasionally after Hard-Match. I have no idea why, no error happened in the AAD sync log. Users can use email service normally.

Anyone has experience the same with me? Any solution or idea will be appreciated!!

Best regards,

Louis

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,880 questions
Outlook Management
Outlook Management
Outlook: A family of Microsoft email and calendar products.Management: The act or process of organizing, handling, directing or controlling something.
4,896 questions
Microsoft Exchange Hybrid Management
Microsoft Exchange Hybrid Management
Microsoft Exchange: Microsoft messaging and collaboration software.Hybrid Management: Organizing, handling, directing or controlling hybrid deployments.
1,893 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,518 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Jayce Yang-MSFT 1,246 Reputation points Microsoft Vendor
    2024-04-18T03:11:58.7033333+00:00

    I think that you need to recreate the Outlook profile to update the configuration.

    Create an Outlook profile

    https://support.office.com/en-us/article/create-an-outlook-profile-f544c1ba-3352-4b3b-be0b-8d42a540459d?ui=en-US&rs=en-US&ad=US

    Please test and check if the issue can be resolved with new profile.