Before you set up Single Sign On (SSO) with 黑料海角91入口, you鈥檒l want to verify that Federated SignOn is disabled in your organization for the domain you鈥檙e planning to federate with 黑料海角91入口 SSO. This ensures that any previous SSO configurations are disabled and allows the syncing of users to be done before activating the Microsoft 365 SSO application in the 黑料海角91入口 Admin Portal.
These steps are also applicable if you want to disable 黑料海角91入口 SSO for Microsoft 365 / Entra ID.
To read more on updating Federation of Domains, see Microsoft's .
Setting a domain from federated to managed
- .
- Set the Execution Policy to Remote Signed:
Set-ExecutionPolicy RemoteSigned
- Connect to your Microsoft 365 / Entra ID tenant:
If you need your Tenant ID, see .
Connect-MGGraph -Scopes "Domain.ReadWrite.All", "Directory.AccessAsUser.All", "Organization.ReadWrite.All", "Directory.ReadWrite.All"
- Enter your Office 365 Global Administrator Credentials.
- Consent and Accept the requested scopes.
- Verify the domain is federated:
Get-MgDomain -DomainId 鈥<YourO365Domain.com>鈥
- Change Federation Authentication from federated to managed:
Update-MgDomain 鈥揇omainId 鈥<YourO365Domain.com>鈥 -AuthenticationType Managed
- To check Federation status:
Get-MgDomain -DomainId 鈥<YourO365Domain.com>鈥
- Disconnect Microsoft Graph:
Disconnect-MGGraph
Authentication Status is now listed as managed.