Skip to content

Commit b7daf47

Browse files
authored
Federated users UPN suffix changes
Since, around March 2019, user UPN suffix changes from one federated domain to another federated domain are allowed and can be synchronized directly by AADConnect's sync engine. So this information is now outdated and misleading.
1 parent 3a4b4db commit b7daf47

File tree

1 file changed

+0
-5
lines changed

1 file changed

+0
-5
lines changed

articles/active-directory/hybrid/tshoot-connect-objectsync.md

Lines changed: 0 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -58,11 +58,6 @@ When UserPrincipalName (UPN)/Alternate Login ID suffix is not verified with the
5858

5959
![Azure AD replaces UPN](media/tshoot-connect-objectsync/objsynch2.png)
6060

61-
### Changing UPN Suffix from one federated domain to another federated domain
62-
Azure Active Directory does not allow the synchronization of UserPrincipalName (UPN)/Alternate Login ID suffix change from one federated domain to another federated domain. This applies to domains, that are verified with the Azure AD Tenant and have the Authentication Type as Federated.
63-
64-
![No UPN synch from one federated domain to another](media/tshoot-connect-objectsync/objsynch3.png)
65-
6661
### Azure AD Tenant DirSync Feature ‘SynchronizeUpnForManagedUsers’ is disabled
6762
When the Azure AD Tenant DirSync Feature ‘SynchronizeUpnForManagedUsers’ is disabled, Azure Active Directory does not allow synchronization updates to UserPrincipalName/Alternate Login ID for licensed user accounts with managed authentication.
6863

0 commit comments

Comments
 (0)