Skip to content

Commit 330a058

Browse files
authored
Merge pull request #250944 from rolyon/rolyon-mto-portal-entra-admin-center
[Azure AD MTO] Azure portal to Microsoft Entra admin center
2 parents 2c84e67 + d424222 commit 330a058

10 files changed

+19
-27
lines changed

articles/active-directory/includes/user-type-workload-limitations-include.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -13,6 +13,6 @@ ms.custom: include file
1313

1414
| App or service | Limitations |
1515
| --- | --- |
16-
| Microsoft Teams | - External member isn't supported in [Teams Connect shared channels](/microsoftteams/platform/concepts/build-and-test/shared-channels).<br/>- Converting an external guest into an external member or converting an external member into an external guest isn't currently supported by Teams. For more information, see [Guest access in Microsoft Teams](/microsoftteams/guest-access). |
16+
| Microsoft Teams | - Converting an external guest into an external member or converting an external member into an external guest isn't currently supported by Teams. For more information, see [Guest access in Microsoft Teams](/microsoftteams/guest-access). |
1717
| Power BI | - Support for UserType Member in Power BI is currently in preview. For more information, see [Distribute Power BI content to external guest users with Azure AD B2B](/power-bi/enterprise/service-admin-azure-ad-b2b#who-can-you-invite). |
1818
| Azure Virtual Desktop | - External member and external guest aren't supported in Azure Virtual Desktop. |

articles/active-directory/multi-tenant-organizations/TOC.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -35,7 +35,7 @@
3535
items:
3636
- name: Configure cross-tenant synchronization
3737
items:
38-
- name: Portal
38+
- name: Admin center
3939
href: cross-tenant-synchronization-configure.md
4040
- name: PowerShell or Graph API
4141
href: cross-tenant-synchronization-configure-graph.md

articles/active-directory/multi-tenant-organizations/cross-tenant-synchronization-configure-graph.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -17,7 +17,7 @@ ms.custom: it-pro
1717

1818
# Configure cross-tenant synchronization using PowerShell or Microsoft Graph API
1919

20-
This article describes the key steps to configure cross-tenant synchronization using Microsoft Graph PowerShell or Microsoft Graph API. When configured, Azure AD automatically provisions and de-provisions B2B users in your target tenant. For detailed steps using the Azure portal, see [Configure cross-tenant synchronization](cross-tenant-synchronization-configure.md).
20+
This article describes the key steps to configure cross-tenant synchronization using Microsoft Graph PowerShell or Microsoft Graph API. When configured, Azure AD automatically provisions and de-provisions B2B users in your target tenant. For detailed steps using the Microsoft Entra admin center, see [Configure cross-tenant synchronization](cross-tenant-synchronization-configure.md).
2121

2222
:::image type="content" source="./media/common/configure-diagram.png" alt-text="Diagram that shows cross-tenant synchronization between source tenant and target tenant." lightbox="./media/common/configure-diagram.png":::
2323

articles/active-directory/multi-tenant-organizations/cross-tenant-synchronization-configure.md

Lines changed: 11 additions & 19 deletions
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
---
22
title: Configure cross-tenant synchronization
3-
description: Learn how to configure cross-tenant synchronization in Azure Active Directory using the Azure portal.
3+
description: Learn how to configure cross-tenant synchronization in Azure Active Directory using the Microsoft Entra admin center.
44
services: active-directory
55
author: rolyon
66
manager: amycolannino
@@ -17,7 +17,7 @@ ms.custom: it-pro
1717

1818
# Configure cross-tenant synchronization
1919

20-
This article describes the steps to configure cross-tenant synchronization using the Azure portal. When configured, Azure AD automatically provisions and de-provisions B2B users in your target tenant. For important details on what this service does, how it works, and frequently asked questions, see [Automate user provisioning and deprovisioning to SaaS applications with Azure Active Directory](../app-provisioning/user-provisioning.md).
20+
This article describes the steps to configure cross-tenant synchronization using the Microsoft Entra admin center. When configured, Azure AD automatically provisions and de-provisions B2B users in your target tenant. For important details on what this service does, how it works, and frequently asked questions, see [Automate user provisioning and deprovisioning to SaaS applications with Azure Active Directory](../app-provisioning/user-provisioning.md).
2121

2222
:::image type="content" source="./media/common/configure-diagram.png" alt-text="Diagram that shows cross-tenant synchronization between source tenant and target tenant." lightbox="./media/common/configure-diagram.png":::
2323

@@ -59,11 +59,9 @@ By the end of this article, you'll be able to:
5959

6060
![Icon for the target tenant.](./media/common/icon-tenant-target.png)<br/>**Target tenant**
6161

62-
1. Sign in to the [Azure portal](https://portal.azure.com) as an administrator in the target tenant.
62+
1. Sign in to the [Microsoft Entra admin center](https://entra.microsoft.com) of the target tenant.
6363

64-
1. Select **Azure Active Directory** > **External Identities**.
65-
66-
1. Select **Cross-tenant access settings**.
64+
1. Browse to **Identity** > **External Identities** > **Cross-tenant access settings**.
6765

6866
1. On the **Organization settings** tab, select **Add organization**.
6967

@@ -101,11 +99,9 @@ In this step, you automatically redeem invitations so users from the source tena
10199

102100
In this step, you automatically redeem invitations in the source tenant.
103101

104-
1. Sign in to the [Azure portal](https://portal.azure.com) as an administrator of the source tenant.
105-
106-
1. Select **Azure Active Directory** > **External Identities**.
102+
1. Sign in to the [Microsoft Entra admin center](https://entra.microsoft.com) of the source tenant.
107103

108-
1. Select **Cross-tenant access settings**.
104+
1. Browse to **Identity** > **External Identities** > **Cross-tenant access settings**.
109105

110106
1. On the **Organization settings** tab, select **Add organization**.
111107

@@ -127,9 +123,7 @@ In this step, you automatically redeem invitations in the source tenant.
127123

128124
![Icon for the source tenant.](./media/common/icon-tenant-source.png)<br/>**Source tenant**
129125

130-
1. In the source tenant, select **Azure Active Directory** > **Cross-tenant synchronization**.
131-
132-
:::image type="content" source="./media/cross-tenant-synchronization-configure/azure-ad-overview.png" alt-text="Screenshot that shows the Azure Active Directory Overview page." lightbox="./media/cross-tenant-synchronization-configure/azure-ad-overview.png":::
126+
1. In the source tenant, browse to **Identity** > **External Identities** > **Cross-tenant synchronization**.
133127

134128
1. Select **Configurations**.
135129

@@ -326,7 +320,7 @@ Attribute mappings allow you to define how data should flow between the source t
326320

327321
Now that you have a configuration, you can test on-demand provisioning with one of your users.
328322

329-
1. In the source tenant, select **Azure Active Directory** > **Cross-tenant synchronization**.
323+
1. In the source tenant, browse to **Identity** > **External Identities** > **Cross-tenant synchronization**.
330324

331325
1. Select **Configurations** and then select your configuration.
332326

@@ -364,7 +358,7 @@ Now that you have a configuration, you can test on-demand provisioning with one
364358

365359
The provisioning job starts the initial synchronization cycle of all users defined in **Scope** of the **Settings** section. The initial cycle takes longer to perform than subsequent cycles, which occur approximately every 40 minutes as long as the Azure AD provisioning service is running.
366360

367-
1. In the source tenant, select **Azure Active Directory** > **Cross-tenant synchronization**.
361+
1. In the source tenant, browse to **Identity** > **External Identities** > **Cross-tenant synchronization**.
368362

369363
1. Select **Configurations** and then select your configuration.
370364

@@ -406,9 +400,7 @@ Once you've started a provisioning job, you can monitor the status.
406400

407401
Even though users are being provisioned in the target tenant, they still might be able to remove themselves. If users remove themselves and they are in scope, they'll be provisioned again during the next provisioning cycle. If you want to disallow the ability for users to remove themselves from your organization, you must configure the **External user leave settings**.
408402

409-
1. In the target tenant, select **Azure Active Directory**.
410-
411-
1. Select **External Identities** > **External collaboration settings**.
403+
1. In the target tenant, browse to **Identity** > **External Identities** > **External collaboration settings**.
412404

413405
1. Under **External user leave settings**, choose whether to allow external users to leave your organization themselves.
414406

@@ -420,7 +412,7 @@ This setting also applies to B2B collaboration and B2B direct connect, so if you
420412

421413
Follows these steps to delete a configuration on the **Configurations** page.
422414

423-
1. In the source tenant, select **Azure Active Directory** > **Cross-tenant synchronization**.
415+
1. In the source tenant, browse to **Identity** > **External Identities** > **Cross-tenant synchronization**.
424416

425417
1. On the **Configurations** page, add a check mark next to the configuration you want to delete.
426418

articles/active-directory/multi-tenant-organizations/cross-tenant-synchronization-overview.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -84,7 +84,7 @@ To configure this setting using Microsoft Graph, see the [Update crossTenantAcce
8484

8585
#### How do users know what tenants they belong to?
8686

87-
For cross-tenant synchronization, users don't receive an email or have to accept a consent prompt. If users want to see what tenants they belong to, they can open their [My Account](https://support.microsoft.com/account-billing/my-account-portal-for-work-or-school-accounts-eab41bfe-3b9e-441e-82be-1f6e568d65fd) page and select **Organizations**. In the Azure portal, users can open their [Azure portal settings](../../azure-portal/set-preferences.md), view their **Directories + subscriptions**, and switch directories.
87+
For cross-tenant synchronization, users don't receive an email or have to accept a consent prompt. If users want to see what tenants they belong to, they can open their [My Account](https://support.microsoft.com/account-billing/my-account-portal-for-work-or-school-accounts-eab41bfe-3b9e-441e-82be-1f6e568d65fd) page and select **Organizations**. In the Microsoft Entra admin center, users can open their [Portal settings](../../azure-portal/set-preferences.md), view their **Directories + subscriptions**, and switch directories.
8888

8989
For more information, including privacy information, see [Leave an organization as an external user](../external-identities/leave-the-organization.md).
9090

articles/active-directory/multi-tenant-organizations/index.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -70,7 +70,7 @@ landingContent:
7070
linkLists:
7171
- linkListType: how-to-guide
7272
links:
73-
- text: Azure portal
73+
- text: Admin center
7474
url: cross-tenant-synchronization-configure.md
7575
- text: PowerShell or Microsoft Graph API
7676
url: cross-tenant-synchronization-configure-graph.md
Loading

articles/active-directory/multi-tenant-organizations/multi-tenant-organization-known-issues.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -86,7 +86,7 @@ The experiences and issues described in this article have the following scope.
8686

8787
- Microsoft 365 admin center / Azure AD: If you're using Azure AD cross-tenant synchronization to provision your users, rather than the Microsoft 365 admin center share users functionality, Microsoft 365 admin center indicates an **Outbound sync status** of **Not configured**. This is expected preview behavior. Currently, Microsoft 365 admin center only shows the status of Azure AD cross-tenant synchronization jobs created and managed by Microsoft 365 admin center and doesn't display Azure AD cross-tenant synchronizations created and managed in Azure AD.
8888

89-
- Microsoft 365 admin center / Azure AD: If you view Azure AD cross-tenant synchronization in Azure portal, after adding tenants to or after joining a multi-tenant organization in Microsoft 365 admin center, you'll see a cross-tenant synchronization configuration with the name MTO_Sync_&lt;TenantID&gt;. Refrain from editing or changing the name if you want Microsoft 365 admin center to recognize the configuration as created and managed by Microsoft 365 admin center.
89+
- Microsoft 365 admin center / Azure AD: If you view Azure AD cross-tenant synchronization in Microsoft Entra admin center, after adding tenants to or after joining a multi-tenant organization in Microsoft 365 admin center, you'll see a cross-tenant synchronization configuration with the name MTO_Sync_&lt;TenantID&gt;. Refrain from editing or changing the name if you want Microsoft 365 admin center to recognize the configuration as created and managed by Microsoft 365 admin center.
9090

9191
- Microsoft 365 admin center / Azure AD: There's no established or supported pattern for Microsoft 365 admin center to take control of pre-existing Azure AD cross-tenant synchronization configurations and jobs.
9292

articles/active-directory/multi-tenant-organizations/multi-tenant-organization-overview.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -169,8 +169,8 @@ Your multi-tenant organization is formed.
169169
Depending on your use case, you may want to synchronize users using one of the following methods:
170170

171171
- [Synchronize users in multi-tenant organizations in Microsoft 365 (Preview)](/microsoft-365/enterprise/sync-users-multi-tenant-orgs)
172-
- [Configure cross-tenant synchronization using the Azure portal](cross-tenant-synchronization-configure.md)
173-
- [Configure cross-tenant synchronization using Microsoft Graph API](cross-tenant-synchronization-configure-graph.md)
172+
- [Configure cross-tenant synchronization](cross-tenant-synchronization-configure.md)
173+
- [Configure cross-tenant synchronization using PowerShell or Microsoft Graph API](cross-tenant-synchronization-configure-graph.md)
174174
- Your alternative bulk provisioning engine
175175

176176
## Limits

0 commit comments

Comments
 (0)