My user is not found when attempting to Join an On-Premises host to Entra Domain Services

Joshua Shofstahl 0 Reputation points
2024-10-09T21:19:15.5933333+00:00

I have worked through everything from setting up Entra Domain Services to the Virtual Network, Gateway and a Certificate based VPN. I can ping the Entra Domain Services IP address. (Is this a VM at this point? That is too long, I'm referring to it as Entra DS moving forward...) When I attempt to join the domain (Azure.NotMyDomain.com) I am prompted for credentials. When I connect to a domain called "Azrue" I get an error stating it cannot connect to a domain controller. So I am connecting to the domain controller.
Copilot said I needed to be a member of the Entra Group "AAD DC Administrators". I couldn't locate it in the web portal, but I was able to find it and add my Users GUID to it using PowerShell and Graph.
I think I was already a member...

So, I have done this and tried every way to join the domain...

******@NotMyDomain.Com
******@EnrtaDirectory.NotMyDomain.com (Microsoft Entra Domain Services DNS Name)
******@NotMyDomain.OnMicrosoft.com

Could this be an Enforced MFA problem? is there a workaround?

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Akhilesh Vallamkonda 15,320 Reputation points Microsoft External Staff Moderator
    2024-10-15T19:40:32.3066667+00:00

    Hi @Joshua Shofstahl

    Thank you for reaching Microsoft Q&A Forum!

    I understand that you are unable to join your machine to the domain, but you are able to ping the Entra Domain Services IP address.
    could you please check the DNS settings on your virtual machine: Make sure that the DNS settings on your virtual machine are configured to use the IP address of the Azure AD DS managed domain as the primary DNS server. You can check the DNS settings by running the "ipconfig /all" command in a command prompt.
    For more information, please go through the Fix: An Active Directory Domain Controller Could Not be Contacted

    If the issue is persistent, please follow the Troubleshoot domain-join problems with a Microsoft Entra Domain Services managed domain

    Hope this helps. Do let us know if you any further queries by responding in the comments section.

    Thanks,

    Akhilesh.


    If this answers your query, do click Accept Answer and Yes for was this answer helpful. And, if you have any further query do let us know.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.