When connecting to another Org in Azure. Can you connect to sub-domain or only the top level of the Org in question

Corey Luihn 21 Reputation points Microsoft Employee
2021-03-17T11:54:55.093+00:00

We currently have our tenant connected to an org and wish to only connect to a sub-domain of that org. For example we are currently connected to contoso.com but we would prefer to be connected to share.contoso.com instead and maybe one other sub-domain, but if this is possible we can just create another connection.

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,599 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Marilee Turscak-MSFT 36,336 Reputation points Microsoft Employee
    2021-03-24T20:30:16.007+00:00

    From Add subdomains of a custom domain:

    If you want to add a subdomain name such as ‘europe.contoso.com’ to your organization, you should first add and verify the root domain, such as contoso.com. The subdomain is automatically verified by Azure AD. To see that the subdomain you added is verified, refresh the domain list in the browser.

    If you have already added a contoso.com domain to one Azure AD organization, you can also verify the subdomain europe.contoso.com in a different Azure AD organization. When adding the subdomain, you are prompted to add a TXT record in the DNS hosting provider.

    Is your goal to have everything in one Azure AD tenant or two? As stated in the documentation and related Reddit discussion, you can set up a subdomain but you need to verify both the domains in your Azure AD. Tenant.https://www.reddit.com/r/AZURE/comments/gera4d/is_it_possible_to_setup_azure_ad_using_subdomain/

    See also: https://learn.microsoft.com/en-us/azure/dns/delegate-subdomain