Azure AD Connect remove unavailable server

Ruslan Nalivaika 101 Reputation points
2020-12-08T14:25:59.21+00:00

Azure AD Connect stale object cleanup
Hi all, we recently migrated from old onprem AD to new onprem AD. We had Azure AD Connect sync in the old domain. We disabled it, cleared immutableid on cloud identities and configured sync on the new onprem AD domain. We did not enable sync of all identities at once on the new domain, but rather doing it stages. And then somebody turned on sync on the old domain again, so that some mail enabled security groups and user objects became synchronized again, but with the old domain. Then the old domain was disconnected from the network. Now some of the objects cannot be soft-matched or edited, because they are linked to the old domain. We no longer have access to the old domain and cannot decomission the old AAD Connect properly. How can we remove the link between AAD users/groups and the old domain? Regards- Ruslan

Azure Active Directory
Azure Active Directory
An Azure enterprise identity service that provides single sign-on and multi-factor authentication.
13,636 questions
No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Andy David - MVP 116K Reputation points MVP
    2020-12-08T14:51:00.977+00:00

    I'd open a ticket with Azure support.

    2 people found this answer helpful.