AZURE AD and ON perm AD

Frank Freitas 21 Reputation points

We are remote, and we have users that do not need to log into VPN. SO when they change their AD creds it never syncs to their laptops. I am trying to figure out what AZure resources I need to set up so these users sync with AZURE AD so their passwords are always synced..

Azure Active Directory
Azure Active Directory
An Azure enterprise identity service that provides single sign-on and multi-factor authentication.
12,771 questions
No comments
{count} votes

Accepted answer
  1. AmanpreetSingh-MSFT 55,236 Reputation points

    Hi @Frank Freitas · Thank you for reaching out.

    As documented under General limitations, VPN or line of sight is required for Hybrid Azure AD joined machines to use new password.

    • Hybrid Azure AD joined machines must have network connectivity line of sight to a domain controller to use the new password and update cached credentials. This means that devices must either be on the organization's internal network or on a VPN with network access to an on-premises domain controller.

    Alternatively, if you have your devices Azure AD Joined (not hybrid), you can:

    1. First Enable Azure Active Directory self-service password reset at the Windows sign-in screen
    2. And then Enable Azure Active Directory self-service password reset writeback to an on-premises environment


    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

    No comments

0 additional answers

Sort by: Most helpful