question. I am new to azure

%3CLINGO-SUB%20id%3D%22lingo-sub-2039753%22%20slang%3D%22en-US%22%3Equestion.%20I%20am%20new%20to%20azure%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2039753%22%20slang%3D%22en-US%22%3E%3CP%3EI%20worked%20for%20an%20MSP%20and%20we%20have%20a%20new%20client.%20Kind%20of%20inherited%20their%20problems%3C%2FP%3E%3CP%3EThey%20have%20365%20and%20AD%20and%20azure.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3E365%20is%20not%20completely%20syncing%20with%20AD.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EIt%20is%20only%20syncing%20certain%20things%2C%20like%20groups%3C%2FP%3E%3CP%3Ewhat%20do%20I%20have%20to%20do%20to%20make%20azure%20sync%20with%20365%20and%20AD%20so%20I%20don't%20have%20to%20keep%20going%20back%20to%20both%20programs%20when%20creating%20or%20modifying%20users.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3Ethe%20little%20bit%20it%20was%20sync'ing%20was%20only%20being%20done%20I%20think%20once%20a%20month%2C%20but%20ever%20since%20I%20installed%20AD%20Connect%2C%20it%20is%20now%20syncing%20every%20half%20an%20hour.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3Econfused%20and%20learning.%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2039982%22%20slang%3D%22en-US%22%3ERe%3A%20question.%20I%20am%20new%20to%20azure%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2039982%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F899927%22%20target%3D%22_blank%22%3E%40TEG20%3C%2FA%3E%26nbsp%3B%3C%2FP%3E%3CP%3EHi%26nbsp%3B%3C%2FP%3E%3CP%3ENo%20it's%20not%20possible%26nbsp%3B%20to%20do%20so%20.%20The%20only%20changes%20you%20can%20have%20from%20Azure%20AD%20to%20AD%20is%20password%20and%20group%20through%20password%20write%20back%20and%20group%20write%20back%20.%3C%2FP%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fazure%2Factive-directory%2Fauthentication%2Ftutorial-enable-sspr-writeback%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3EEnable%20Azure%20Active%20Directory%20password%20writeback%20%7C%20Microsoft%20Docs%3C%2FA%3E%3C%2FP%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fazure%2Factive-directory%2Fhybrid%2Fhow-to-connect-group-writeback%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3EAzure%20AD%20Connect%3A%20Group%20writeback%20%7C%20Microsoft%20Docs%3C%2FA%3E%3C%2FP%3E%3CP%3EIn%20fact%20the%20user%20write%20back%20have%20been%20retired%20in%202015%26nbsp%3B%26nbsp%3B%3C%2FP%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fazure%2Factive-directory%2Fhybrid%2Fhow-to-connect-preview%23user-writeback%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3EAzure%20AD%20Connect%3A%20Features%20in%20preview%20%7C%20Microsoft%20Docs%3C%2FA%3E%3C%2FP%3E%3CP%3EYou%20can%20explore%20some%20workaround%20like%20this%20but%20there%20is%20no%20microsoft%20support%20%3A%26nbsp%3B%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Fjustidm.wordpress.com%2F2015%2F07%2F02%2Fusing-aadconnect-to-merge-users-originating-in-azuread%2F%22%20target%3D%22_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%22%3EUsing%20AADConnect%20to%20merge%20users%20originating%20in%20AzureAD%20%E2%80%93%20JustIDM%20(wordpress.com)%3C%2FA%3E%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EAnother%20way%20to%20get%20things%20done%20is%20to%20build%20a%20user%20creation%20process%26nbsp%3B%20so%20all%20the%20admins%20who%20have%20rights%20to%20create%20a%20user%20should%20follow%20.%26nbsp%3B%3C%2FP%3E%3CP%3ECreate%20user%20in%20AD%26nbsp%3B%20-----%26gt%3B%20Sync%20in%20AAD%20Connext%20--------%26gt%3B%20Assign%20a%20Licence%26nbsp%3B%20%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E
New Contributor

I worked for an MSP and we have a new client. Kind of inherited their problems

They have 365 and AD and azure.

 

365 is not completely syncing with AD.

 

It is only syncing certain things, like groups

what do I have to do to make azure sync with 365 and AD so I don't have to keep going back to both programs when creating or modifying users.

 

the little bit it was sync'ing was only being done I think once a month, but ever since I installed AD Connect, it is now syncing every half an hour.

 

confused and learning.

1 Reply

@TEG20 

Hi 

No it's not possible  to do so . The only changes you can have from Azure AD to AD is password and group through password write back and group write back .

Enable Azure Active Directory password writeback | Microsoft Docs

Azure AD Connect: Group writeback | Microsoft Docs

In fact the user write back have been retired in 2015  

Azure AD Connect: Features in preview | Microsoft Docs

You can explore some workaround like this but there is no microsoft support :  Using AADConnect to merge users originating in AzureAD – JustIDM (wordpress.com)

 

Another way to get things done is to build a user creation process  so all the admins who have rights to create a user should follow . 

Create user in AD  -----> Sync in AAD Connext --------> Assign a Licence