简体   繁体   English

将Azure AD来宾用户的来源从“ Microsoft帐户”更改为“外部AAD”(Azure B2B)

[英]Change Azure AD Guest User's Source from “Microsoft Account” to “External AAD” (Azure B2B)

I have an Azure Active Directory "ddddd" (hosted at xxxxx.onmicrosoft.com) with a Guest User that has ALREADY responded to an invitation. 我有一个Azure Active Directory“ ddddd”(托管在xxxxx.onmicrosoft.com),其来宾用户已经响应了邀请。 But he responded with his Microsoft personal account instead of his work account (both have the same email address). 但是他用自己的Microsoft个人帐户而不是他的工作帐户(都具有相同的电子邮件地址)进行了回复。 In the user profile, I see the source is currently "Microsoft Account". 在用户配置文件中,我看到源当前是“ Microsoft帐户”。

This Active Directory "ddddd" is linked to Azure DevOps (Team Services) organization "ttttt" (ie the Directory setting of the "ttttt" DevOps organization is connected to my Active Directory "ddddd"). 该Active Directory“ ddddd”链接到Azure DevOps(团队服务)组织“ ttttt”(即“ ttttt” DevOps组织的目录设置连接到我的Active Directory“ ddddd”)。 This user is already set up in "ttttt" and linked properly. 该用户已经在“ ttttt”中设置并正确链接。

How do I re-invite or directly update the user profile so the Source is tied to "External Azure Active Directory" linked to his work place (which is an on-prem Active Directory linked through ADFS to Office 365 via yyyyy.onmicrosoft.com)? 我如何重新邀请或直接更新用户配置文件,以便源链接到链接到他工作地点的“外部Azure Active Directory”(这是一个本地Active Directory,通过ADFS通过yyyyy.onmicrosoft.com链接到Office 365 )?

One idea that occurs to me is to delete the user and re-create in Azure AD "ddddd" (at xxxxx.onmicrosoft.com), re-invite and ask him to accept the invitation using his work address (via adfs to yyyyy.onmicrosoft.com). 我想到的一种想法是删除用户并在Azure AD“ ddddd”(位于xxxxx.onmicrosoft.com)上重新创建,重新邀请并要求他使用其工作地址(通过adfs到yyyyy)接受邀请。 onmicrosoft.com)。

So my second question is: will recreating the user affect the user in my Azure DevOps "ttttt" ? 所以我的第二个问题是:重新创建用户会影响我的Azure DevOps“ ttttt”中的用户吗? The email address of his work and personal Microsoft account is the same. 他的工作和个人Microsoft帐户的电子邮件地址相同。

At this point, Azure AD doesn't support changing the authentication type of an external (guest or member) user, so if the user is authenticating with MSA and you'd prefer they use their Azure AD credentials, you'll have to delete their existing guest account and re-invite them with instructions that they should use their Azure AD credentials to accept. 此时,Azure AD不支持更改外部(来宾或成员)用户的身份验证类型,因此,如果该用户正在通过MSA进行身份验证,并且您希望他们使用其Azure AD凭据,则必须删除他们现有的来宾帐户,并通过说明使用他们的Azure AD凭据来接受邀请。

As for the Azure DevOps tenant, I'm less familiar with that set up but if those are really separate tenants doing this operation in ddddd shouldn't affect ttttt. 至于Azure DevOps租户,我对该设置不太熟悉,但是如果这些租户确实是单独的租户,则在ddddd中执行此操作不应影响ttttt。

声明:本站的技术帖子网页,遵循CC BY-SA 4.0协议,如果您需要转载,请注明本站网址或者原文地址。任何问题请咨询:yoyou2525@163.com.

相关问题 Azure 广告 B2B 身份验证从外部用户 CRM 检索数据 - Azure Ad B2B authentication retrieve data from external user CRM Azure B2B AD上的用户和访客用户之间的区别? - Difference between Users and Guest Users on Azure B2B AD? 使用 azure ad b2b 在注册流程中将访客用户添加到组 - Add guest user to group during signup flow with azure ad b2b 我们可以在单个应用程序中使用 Azure Active Directory(AAD) B2B 和 B2C 吗??? 用于 Microsoft Intune 访问的 B2B 和用于用户登录/注册的 B2C - Could we use Azure Active Directory(AAD) B2B and B2C in single application??? B2B for Microsoft Intune access and B2C for user login/signup 将 B2B 外部用户添加到 Azure AD 而不发送邀请 email C# - Add B2B external user to Azure AD without sending invitation email C# 用于分析服务和Power BI的Azure AD B2B-外部用户邀请 - Azure AD B2B for Analysis service and Power BI - External User invite 更改azure ad b2b目录上的令牌到期时间 - Change token expiry time on azure ad b2b directory Azure AD,B2B和Shibboleth集成 - Azure AD, B2B, and Shibboleth Integration Azure B2B 外部身份 - Azure B2B External Identities 将使用Azure AD和Azure B2B的身份验证WebAPI服务 - Authentication WebAPI service that will use Azure AD and Azure B2B
 
粤ICP备18138465号  © 2020-2024 STACKOOM.COM