Global account lock out when tried to join the domain

V Admin 1 Reputation point
2020-04-17T17:30:29.233+00:00

I am using a ADDS servers from azure and configured Virtual Gateway for site to site access to my firewall. When i use a guest machine and tried to join it to the domain the global admin gets locked out and it wont allow me to join domain. I get the pop-up to enter the credentials to join the domain and when i enter my global admin credentials and i see a lock out message.

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,435 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Sam Cogan 10,082 Reputation points MVP
    2020-04-18T21:03:20.503+00:00

    Have you added your admin user to the "Azure AD DC administrators" group in AAD? Users need to be a member of this to be an admin in AAD DS, it is not granted by default to AAD global admins.

    0 comments No comments