Read on here.
https://learn.microsoft.com/en-us/windows-server/identity/ad-ds/manage/understand-microsoft-accounts
--please don't forget to upvote
and Accept as answer
if the reply is helpful--
This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
Good day everyone,
I have a question/idea.
I have a Client with AD Account on a PC.
This PC is already logged in with a Microsoft account (onedrive, mail ect)
But now I want to apply certain restrictions using GP, but that works best with a Domain Account.
Is it possible to have an AD account that uses the Services and Synchronization of the Microsoft account.
I think if I put this GP in it, I'm blocking the Services function.
And this GP should block the 'Account login > Windows'?
Computer Configuration > Windows Settings > Security Settings > Local Polices > Security Options
“Accounts: Block Microsoft accounts”
Users can't add or log on with Microsoft accounts
But can I link the desired Services to the Domain Account?
Read on here.
https://learn.microsoft.com/en-us/windows-server/identity/ad-ds/manage/understand-microsoft-accounts
--please don't forget to upvote
and Accept as answer
if the reply is helpful--