To modify the Microsoft 365 roles assigned to existing hybrid users
- On the Active Roles Web Interface navigation bar, click Directory Management.
-
On the Views tab in the Browse pane, click Active Directory.
The list of Active Directory domains is displayed.
-
Click the specific domain, Container or the Organizational Unit, and then select the specific user for which you want to view or update the properties.
-
In the Command pane, click Azure properties.
-
In the Azure Properties dialog, click O365 Roles tab.
-
Click the specific domain, Container or the Organizational Unit, and then select the specific user for which you want to view or update the properties.
NOTE: When a user is deprovisioned, all the roles that were assigned to the user are retained.
The Active Roles Web Interface allows you to perform administrative tasks, for example, create, read, update, and delete Microsoft 365 contacts in Hybrid environment. You can also perform other operations, for example, adding and removing Microsoft 365 contacts from groups.
You can use the Active Roles Web Interface to create and enable a new Microsoft 365 contact.
To create a new Microsoft 365 contact
- On the Active Roles Web Interface navigation bar, click Directory Management.
-
On the Views tab in the Browse pane, click Active Directory.
The list of Active Directory domains is displayed.
-
Click the domain in which you want to create a new contact.
-
In the list, click the required Container or the Organizational Unit.
-
In the Command pane, click New Contact.
-
In the New Contact <OU-name>-General wizard, enter the contact details such as First Name, Last Name, Initials, and Display name.
-
Click Next.
-
In the Create Azure Account Properties wizard, select Create Azure Contact.
-
From the Tenant, select the Tenant name.
-
In the External e-mail address field, enter the email address for the contact, and click Finish.
The Microsoft 365 account details for the new contact are generated automatically and populated in the respective fields.
NOTE: In Federated or Synchronized environments, Microsoft 365 contact creation is not supported. The contact is created in Active Roles and is synchronized eventually to Microsoft 365 using Microsoft Native tools, such as AAD Connect. To manage the Microsoft 365 contact through Active Roles, you must perform periodic back-synchronization to on-premise AD.
For an existing Microsoft 365 contact, you can use the Active Roles Web Interface to modify the Microsoft 365 contact properties.
To view or modify the Microsoft 365 contact properties
- On the Active Roles Web Interface navigation bar, click Directory Management.
-
On the Views tab in the Browse pane, click Active Directory.
The list of Active Directory domains is displayed.
-
Click the specific domain, Container or the Organizational Unit, and then select the check box corresponding to the specific contact for which you want to view or update the Manager information.
-
In the Command pane, click Azure properties.
The Azure Properties dialog for the contact is displayed.
-
To view or modify properties of the Microsoft 365 contact, use the tabs in the Azure Properties dialog .
-
After setting all the required properties, click Save.