25,285 questions with Microsoft Security | Microsoft Entra | Microsoft Entra ID tags

Sort by: Updated
1 answer One of the answers was accepted by the question author.

Azure B2C How to assign b2c login user flow to www.example.com url

If i use localhost:4200 url for the 4200 url the login user flow should come but it redirect to userflow url like https://test.b2clogin.com/test.onmicrosoft.com/oauth2/v2.0/authorize? how can i change to http://localhost:4200 or www.example.com

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-08-18T09:52:05.08+00:00
Mohamed Umair Mohamed Anhar 41 Reputation points
commented 2020-08-18T13:12:08.397+00:00
AmanpreetSingh-MSFT 56,876 Reputation points Moderator
1 answer One of the answers was accepted by the question author.

Is there a way to give app access to all users from another tenant in one go?

We are developing and hosting an app which is being used by users from another tentant. We invite them one by one as needed, but they should essentially all have access. This appoach is now getting tedious and time consuming. Is there a way to…

Microsoft Security | Microsoft Entra | Microsoft Entra External ID
Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-08-14T08:36:52.663+00:00
Simon Mouridsen 21 Reputation points
accepted 2020-08-18T10:24:13.137+00:00
Simon Mouridsen 21 Reputation points
1 answer One of the answers was accepted by the question author.

How to integrate Spring boot with Non Gallery Application Using SAML Single Sign On

Hello, I am Developing Java Spring Boot System and trying to Integrate with Azure non-gallery app using SAML Single Sign-On. I made a lot of research but I can't find examples of source codes or documentations. On Microsoft documentation like Configure…

Azure Spring Apps
Azure Spring Apps
An Azure platform as a service for running Spring Boot applications at cloud scale. Previously known as Azure Spring Cloud.
134 questions
Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-07-07T04:58:15.64+00:00
JaparJarkynbyek 41 Reputation points
accepted 2020-08-18T07:42:37.57+00:00
JaparJarkynbyek 41 Reputation points
2 answers One of the answers was accepted by the question author.

Get delegated user permissons with admin consent rather than a user login?

I'm trying to send teams messages on behalf of users in my organization using the graphs api, and I don't want them to have to login individually, to gen a access token for each user. So is there a way with admin access , to either generate a access…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
Microsoft Teams | Microsoft Teams for business | Other
asked 2020-08-17T14:02:52.867+00:00
Jordan Mesches 21 Reputation points
answered 2020-08-18T06:45:25.807+00:00
JimmyYang-MSFT 58,651 Reputation points Moderator
2 answers

How do I troubleshoot Azure Sign-in Failures

My on premise A/D server event log shows a high number of Kervberos logons from the MSOL_xxxxx account as shown below. When I look at the Azure Sign-in Failures, I am seeing an increased number of failures especially during off hours from locations…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-08-17T11:39:43.23+00:00
Mike Garczynski 1 Reputation point
commented 2020-08-18T06:43:49.28+00:00
soumi-MSFT 11,831 Reputation points Microsoft Employee Moderator
1 answer

Add new group type "Microsof 365" to Azure AD by powershell

Hello! We have an Azure AD license for Office 365. Synchronization of on-premises AD and Azure AD is configured (everything works). MS Teams requires in Azure AD groups type "Microsoft 365", but only Security groups are synced from our AD. Is…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-08-17T08:41:30.283+00:00
Yuri Shvets 1 Reputation point
commented 2020-08-18T06:32:07.967+00:00
Yuri Shvets 1 Reputation point
3 answers One of the answers was accepted by the question author.

Move from Azure AD registered to Azure AD Joined

Hi, We have several machines today that are Azure AD registered but we want to "convert" these to Azure AD joined. Is that possible without doing a reset ? The machines are today Azure AD registered since we have a local domain,…

Windows for business | Windows Client for IT Pros | Directory services | Active Directory
Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-08-04T21:55:50.843+00:00
Andreas 1,331 Reputation points
accepted 2020-08-18T05:09:10.463+00:00
Andreas 1,331 Reputation points
0 answers

Reverting "accessTokenAcceptedVersion" in manifest to "null" does not work as expected

I noticed Logic Apps where calling our Function Apps with OAuth(1) instead of OAuth V2. So I tried to make the Function Apps work with OAuth2 by updating its AD Appregistration Manifest "accessTokenAcceptedVersion" from null to 2 and that…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-08-17T19:34:26.537+00:00
Edwin van de Burgt 21 Reputation points
commented 2020-08-17T20:57:40.467+00:00
Marilee Turscak-MSFT 37,206 Reputation points Microsoft Employee Moderator
2 answers

Disable sync Active Directory to Office365

Disable sync Active Directory to Office365 Hi all, I have a domain controller that has got "Windows AD Connect". I have configured it "Password Hash sync". I have created an Organization Unit on premise Active…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-08-17T10:02:45.677+00:00
Federico Coppola 1,181 Reputation points
answered 2020-08-17T18:52:11.773+00:00
Federico Coppola 1,181 Reputation points
1 answer

AAD user-provisioning is not skipping user to Gsuite

Thi is the error message that occurs when synchronisation occurs between AAD and Gsuite: User '*****@jacobste.co.za' will be skipped. The User in Azure Active Directory does not have a value for at least one matching attribute or joining property.…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-08-17T08:37:38.37+00:00
Tanak Jacob 1 Reputation point
answered 2020-08-17T16:21:01.003+00:00
Alfredo Revilla - Upwork Top Talent | IAM SWE SWA 27,526 Reputation points Moderator
1 answer

what is this

Sorry, but we’re having trouble signing you in. AADSTS50020: User account 'cher1860@Anonymous .com' from identity provider 'live.com' does not exist in tenant 'State of Hawaii' and cannot access the application…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-08-16T16:05:48.203+00:00
Cher Dunhour 1 Reputation point
answered 2020-08-17T15:57:02.393+00:00
Alfredo Revilla - Upwork Top Talent | IAM SWE SWA 27,526 Reputation points Moderator
2 answers

Migrate Azure AD AAD Connect federation to another ADFS farm

Hi, Because of a name change in our company we need to migrate all relying parties from one ADFS to another. How can I migrate the AAD Connect federation with Azure AD to anonther ADFS farm? Any help would be appreciated.

Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-07-17T12:42:28.837+00:00
MrEco 6 Reputation points
answered 2020-08-17T12:39:14.05+00:00
MrEco 6 Reputation points
2 answers

Audit Report for 2FA enabled accounts

Azure MFA status not updating in O365. Azure Conditional access users default to disabled in O365. I Need to run a report for an IS audit to show 2FA is enabled for all accounts. Powershell scripts pull from O365 but show disabled for Conditional…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-08-03T13:08:56.887+00:00
ALG719 1 Reputation point
commented 2020-08-17T08:01:58.57+00:00
VipulSparsh-MSFT 16,316 Reputation points Microsoft Employee Moderator
2 answers

Issue with Azure AD metadata import in linux based system with Tomcat as application server

Facing issue while importing SAML SSO Azure AD IDP metadata in SP (Linux based system. Tomcat as application server). Error: SignatureValidationFilter : Signature trust establishment failed for metadata entry https://sts.windows.net/XXXXXXXXXX. We…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-07-02T15:59:57.9+00:00
amitava hazra 6 Reputation points
answered 2020-08-17T06:43:58.467+00:00
JaparJarkynbyek 41 Reputation points
1 answer

I need Sign-in and/or audit logs from 2 years ago. Only have option for 7 days ago max.

Hello, I have Azure Active Directory for my organization. I am trying to see logs of sign-ins for an employee back in 2018. I only see the option for logs going back 7 days. This is for a theft of IP case. We need these logs or at least the device…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-08-14T21:48:59.083+00:00
EricR 1 Reputation point
answered 2020-08-14T22:20:58.17+00:00
Alfredo Revilla - Upwork Top Talent | IAM SWE SWA 27,526 Reputation points Moderator
4 answers One of the answers was accepted by the question author.

MSAL-Angular auth_code flow + PKCE support?

I learned at MS Build 2020 that MSAL-Angular is GA. I was wondering if it supports authorization_code flow & PKCE like MSAL 2.0 for JS does already? I've implemented a baseline login component, but seems that it is still using implicit flow? Is…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-05-22T17:36:38.887+00:00
Bernd Schickerbauer 116 Reputation points
commented 2020-08-14T14:31:44.457+00:00
Gary Archer 1 Reputation point
1 answer

TLS Log Warning for AAD Sync - Schannel 36875

We manage quite a few servers, and back in March, enabled LDAPS for all of the domains that had LDAP queries related to VPNs. The same set of instructions was used for each of 8 domain controllers; however, on two of them, we began seeing these warnings…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-08-13T13:10:38.187+00:00
Ian Perry 6 Reputation points
commented 2020-08-14T12:50:07.72+00:00
Ian Perry 6 Reputation points
2 answers One of the answers was accepted by the question author.

Creation of account in AAD if domain is federated allowed?

Hello all I have global admins in AAD but I can't see the domain name I want in the drop down when I create a new user. I checked custom domains and I can see the domain I want to use is verified. It is is federated and perhaps this s the issue? I must…

Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-08-13T08:54:16.043+00:00
AzureAddict 26 Reputation points
answered 2020-08-14T12:44:22.033+00:00
AzureAddict 26 Reputation points
3 answers

Office 365 ATP Plan 1 and Plan 2 application

Dear Support, I have a question related ATP features availability and applicability relatively to which license/plan was assigned to a user. Currently, we have Office 365 ATP (Plan 1) licenses that applied to our users(about 500 users) that gives…

Exchange Online
Exchange Online
A Microsoft email and calendaring hosted service.
6,209 questions
Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-08-04T12:59:17.783+00:00
Айнур Хазиев 1 Reputation point
commented 2020-08-14T05:31:59.85+00:00
Joyce Shen - MSFT 16,701 Reputation points
1 answer One of the answers was accepted by the question author.

Microsoft Store for Business / Education - How to configure specific users to receive AND approve App Requests

I have been working looking into a process to ensure users when using the Private Store, can request apps, then for these apps to be approved by a user or team. In my scenario I have down the following settings: Allow users to shop: Off Make…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-08-11T13:38:21.51+00:00
Delroy McKenzie (IT Services) 26 Reputation points
accepted 2020-08-13T18:03:51.027+00:00
Delroy McKenzie (IT Services) 26 Reputation points