Fully migrate AD users to Azure AD
I would like to be able to fully migrate my AD users to the cloud, so that when I use them to log into an AzureAD Joined Machine, the whoami CMD properly returns AzureAD\fristnamelastname. Right now there are hidden attributes accociated with the previously AD synced user, that causes the whoami CMD to return DOMAIN\username. This is preventing cloud migrations.
Response I received suggesting that I contact this team.
"This a known gap, that we're reviewing. Even though you have migrated the user from AD to Azure AD, the onprem SamAccountName is still intact on the user object, among other on-prem AD attributes. As a result, Azure AD picks those details and shows domain/user instead of AzureAD/user. This attribute cannot be modified or cleared through Graph APIs at this point, so there's no way to change the behavior
Please file a UserVoice suggestion on MS Graph for this so that our teams can get the feedback and prioritize it as needed"
Microsoft has said that this is on the radar but not done yet. I don't know why. The solution of 'Remove it from the OU in Azure AD Connect, then (after it deletes in Azure) Restore it from the trash in Azure, then quickly change the Immute ID before it syncs again' is not a reasonable way to convert an entire organization. https://feedback.azure.com/forums/169401-azure-active-directory/suggestions/36479119-allow-conversion-of-ad-synced-accounts-to-in-clou
Daniel Tregellis commented
MS still offer no support way to migrate domain profiles to Azure AD ?
This needs to be an option as many like ourselves are moving away from on-prem AD environments.
Nalle Jacobsson Reuterswärd commented
Same here. I fail to understand why Microsoft has not provided a clear path to migrate users from on-prem AD to Azure AD.
Thank you, this is a big concern of ours.