Forum Discussion

AndrewX's avatar
AndrewX
Iron Contributor
Sep 07, 2016
Solved

What happens to locked out on premise account, when synced to O365?

Can someone please point me to the articles, i cannot find them online.

 

What happens to locked out on premise account, when synced to O365?

 

Can the user continue to login to O365, send/receive email etc?

  • The attribute "lockedouttime" which shows when/if an account is locked, does not get synced to o365.

    If we WANT locked on-prem users to not be allowed to sign-in online we can add a filter rule to ADConnect/ADSync.
  • AndrewX's avatar
    AndrewX
    Iron Contributor

    What i have found so far.

     

    In my on premise directory, i locked out a test account, and run adsync.

     

    Using the test account i can still authenticate to office365 mail, sharepoint, onedrive etc..

     

    Is this expected?

    • AndrewX's avatar
      AndrewX
      Iron Contributor
      The attribute "lockedouttime" which shows when/if an account is locked, does not get synced to o365.

      If we WANT locked on-prem users to not be allowed to sign-in online we can add a filter rule to ADConnect/ADSync.
      • Peter Johnson's avatar
        Peter Johnson
        Brass Contributor

        Hi Andrew, did you test this out and manage to get it working successfully?

Resources