Create a user account in Azure Active Directory
ARM allows you to quickly create standardized user accounts. You can delegate the process to help desk personnel and further simplify and standardize it using specifically customized templates for different company roles.
You can also assign an Office 365 license. If Exchange Online is covered by this license, ARM automatically creates a mailbox for the new user.
Use this feature on managed Azure Active Directory domains only. For federated domains that are synced with an on-premise AD, you must create the user in the leading on-premise AD.
-
Log in to the Access Rights Manager application.
-
In the toolbar, click Start.
-
Under User Provisioning, click Create new user or group.
-
Select an Azure Active Directory template.
ARM offers 4 standard templates. If you add an Azure Active Directory (AAD) as a resource to ARM then you will find two templates for creating new users and groups in AAD.
You can customize the Azure templates in the same way as for other resources. SolarWinds recommends using customized templates, as this simplifies and speeds up the process.
-
Click Select.
-
In the Create Accounts window, enter the required information.
You can customize the template—for example. hide input fields, create or validate inputs. For more information see customizing templates.-
Enter the basic user information.
-
(Required) Click the User Location drop-down menu and select the location of the new user. This selection is used for Office 365 billing purposes.
-
Click the Exchange Online License drop-down menu and select a license. If Exchange Online is included in the license, ARM will create a new mailbox.
-
Configure the remaining options as required.
-
Click the Credentials link and enter the credentials used to create the new user account. Credentials can be stored in the Azure AD change configuration.
-
(Required) Enter a comment regarding this action.
-
Click Immediately or select another process.
If an error message displays that includes a request for an immutable ID, you are trying to add a new user to a federated domain. You cannot use this feature to create a new user in a federated domain. In such cases, create the new user in the leading on-premise AD.
-
For more information, see the following sections: