Forum Discussion

AndrewX's avatar
AndrewX
Iron Contributor
Sep 07, 2016

What happens to locked out on premise account, when synced to O365?

Can someone please point me to the articles, i cannot find them online.

 

What happens to locked out on premise account, when synced to O365?

 

Can the user continue to login to O365, send/receive email etc?

  • The attribute "lockedouttime" which shows when/if an account is locked, does not get synced to o365.

    If we WANT locked on-prem users to not be allowed to sign-in online we can add a filter rule to ADConnect/ADSync.
  • AndrewX's avatar
    AndrewX
    Iron Contributor

    What i have found so far.

     

    In my on premise directory, i locked out a test account, and run adsync.

     

    Using the test account i can still authenticate to office365 mail, sharepoint, onedrive etc..

     

    Is this expected?

    • AndrewX's avatar
      AndrewX
      Iron Contributor
      The attribute "lockedouttime" which shows when/if an account is locked, does not get synced to o365.

      If we WANT locked on-prem users to not be allowed to sign-in online we can add a filter rule to ADConnect/ADSync.
      • Peter Johnson's avatar
        Peter Johnson
        Brass Contributor

        Hi Andrew, did you test this out and manage to get it working successfully?

Resources