I'm having some significant issues with our cloud-only setup that uses Microsoft Entra ID and Entra Domain Services. Our users log into Azure Virtual Desktop (AVD) session hosts, but we're encountering some frustrating problems. When users change their passwords, they are unable to log back into AVD with the new password. This issue escalates because new users, after successfully changing their passwords during the initial setup, also cannot log in. They receive an error that states 'E_PROXY_TENANT_CANNOT_FIND_USER_IN_ACTIVE_DIRECTORY'. Additionally, when we change a user's group membership, the change doesn't seem to reflect immediately. I've noticed that the 'Synchronization with Azure AD' shows it hasn't updated for over two days. I'm beginning to think there's a disconnect between Entra ID changes and Entra Domain Services. From what I've gathered, synchronization is automatic and managed behind the scenes, so I'm looking for any insights on how to resolve these issues.
2 Answers
Have you checked the health status of Microsoft Entra Domain Services? That can sometimes provide insights into what might be going wrong.
That sounds really frustrating! It might help to look into the diagnostic logs or specific monitoring metrics for Entra Domain Services. Even if the health status looks good, those logs can help identify hidden errors.

Related Questions
Can't Load PhpMyadmin On After Server Update
Redirect www to non-www in Apache Conf
How To Check If Your SSL Cert Is SHA 1
Windows TrackPad Gestures