Jump to content


Geek-E

SSO woes with Azure AD Connect and Intune

Recommended Posts

Hey all,

 

Recently I've started playing with Microsoft Intune in my lab. I'm trying to utilize the new Azure AD Connect with password hash sync to provide both AD sync and Single sign on. I signed up for the intune trial, bought my public domain name and verified it with a TXT record on intune, downloaded Azure AD connect and did a custom install where I specified that AD passwords should be synchronized and single sign on enabled. My users sync just fine and I can see them in the intune management, but when I go to activate a user, I get the email for a temporary password thus indicating SSO isn't working. Any ideas where I might have gone wrong?

Share this post


Link to post
Share on other sites

Testing Standalone first. I finally figured out what I missed. For those interested, there are permissions that need to be configured on the domain for the Azure AD connector account. The required permissions are;

- Replicating Directory Changes

- Replicating Directory Changes All

  • Like 1

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...


×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.