Azure AD DS Gotcha - Resetting Password of Preexisting AAD users

First time caller long time listener. I wanted to let everyone know about Azure AD DS and something that is easy to miss. When using Azure AD DS with cloud-only environments, one required step is that all of your AVD users will be required to reset their passwords before they can use AVD. This is because the user's password hashes must be regenerated to be compatible with ADDS (traditional AD).

https://docs.microsoft.com/en-us/azure/active-directory-domain-services/tutorial-create-instance#enable-user-accounts-for-azure-ad-ds

0

Comments (2 comments)

0
Avatar
Jason Bridgeman

Is it recommended to setup the AADDS domain as the .onmicrosoft domain, instead of their custom domain, to prevent the issue where users can't access their own website (same domain) from within the host?
If I use the custom domain when setting up AADDS, I have to edit the DNS host files on each host so they can access their own website.

Is there a better way of doing this?

0
Avatar
Travis Lamming

Thanks for the tip!

Please sign in to leave a comment.