Also my experience with Azure's LDAP service is that sync with an Azure domain can take up to a full hour from the domain to LDAP. From LDAP to domain is immediate. So if you use a domain tool (such as logging in to the azure dashboard) and setting a user password it can take up to an hour before it will appear to LDAP (and thus to SSPR). In practice this shouldn't be an issue but while configuring and testing it is a major pain and confusion point.
Scott Green
unread,
Jul 17, 2019, 6:05:56 PM7/17/19
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to pwm-general
Is there a good way to sync an AD password to an Office 365 / Azure user? Or a process to run that will sync the password when it's reset?