• Skip to primary navigation
  • Skip to main content
site logo
  • About
    • Approach
    • Partnerships
    • Mission
    • Leadership
    • Awards
    • Arraya Cares
  • Solutions
    • Solutions

    • Hybrid Infrastructure
      • Hyperconverged
      • Infrastructure as a Service
      • Servers, Storage, and Virtualization
      • Data Protection
      • Disaster Recovery & Business Continuity
    • Apps & Data
      • AI
      • Automation
      • Customizations
      • Visualizations & Integrations
      • Migrations
    • Network
      • Enterprise Networks
      • Wireless Connectivity
      • Cloud Networking Solutions
      • IoT
    • Cybersecurity
      • Endpoint Security
      • Network Security
      • Cloud Security
      • Application Security
    • Modern Workplace
      • Microsoft Licensing
      • Productivity & Collaboration
      • Modern Endpoint Deployment & Management
      • Microsoft Compliance & Risk
      • Backup
      • Cloud
  • Services
    • Services

    • Managed Services
      • Service Desk
      • Outsourced IT
      • Managed Security
      • Managed NOC
      • Arraya Adaptive Management for Microsoft Technologies
      • ADEPT: Arraya's White Label Program
    • Advisory Services
      • Assessments
      • Strategy
      • vCTO
      • vCISO
      • Enterprise Architecture
    • Staffing
      • Infrastructure Engineering
      • Security & Compliance
      • Application & Software
    • Professional Services
      • Project Management 
      • Systems Integration 
      • Mergers & Acquisitions
      • Knowledge & Skills Transfer 
  • Industries
    • Education
    • Finance
    • Healthcare
    • Legal
    • Manufacturing
    • Software and Services
  • Insights
    • News
    • Blog
    • Events
    • Videos
    • Case studies
  • Careers
  • CSP Login
search icon
Contact Us

Azure AD Connect Update Saves Time, Errors During Account Maintenance

A move to Microsoft’s Office 365 is supposed to make IT’s workload easier to manage – and that’s usually exactly what it does. However, there wasAbove view of business team sitting around table and working one inefficiency the cloud solution was previously unable to correct. As soon as Microsoft released a pair of new features in Azure AD Connect that seemed to address this, members of Arraya’s Microsoft Collaboration team headed for our demo lab to try it out.

The Problem

During a company’s termination process, IT may attempt to move an email account from a terminated employee and temporarily assign it to his or her manager. The issue was that an SMTP address could only exist in one account at a time. So, if IT made that full switch on premises and then attempted to sync to the cloud, it would unleash a chain of error messages when DirSync was launched. The change wouldn’t take and IT would be stuck.

In order to properly execute this, IT had to first remove the SMTP address from the terminated user’s account and launch DirSync to remove that address from the employee’s account in Office 365. Only after the sync was completed could IT add that SMTP address to the appropriate manager or supervisor as a secondary address. A second DirSync would need to be executed to reflect this change in the business’ Office 365 deployment.

These two syncs couldn’t be performed concurrently. This left IT with two choices:

1) Move on to other tasks during the process and risk leaving the task unfinished should some type of fire pop up.

2) Stick to the task at hand, which could mean two or more hours where a staffer left other duties and projects unattended to wait while the necessary syncs were performed.

Besides that, many of the IT staffers tasked with maintaining employee accounts lacked the credentials to execute a DirSync. Before these staffers could complete their assignment, permissions would need to be altered to allow them to do something that should be fairly routine. Giving more employees access to DirSync is itself a hazard as DirSync mistakes can have major consequences.

The Experiment

While reading up on some of the new features contained within Azure AD Connect, one member of Arraya’s Microsoft Collaboration team noticed something very interesting: two features that work together by quarantining an attribute if it is a duplicate of an existing attribute, instead of simply failing the entire process. The features are called DuplicateProxyAddressResiliency and DuplicateUPNResiliency. He passed word along to the rest of the team and soon he and another team member were hard at work in Arraya’s demo environment to see if this feature would solve IT’s account management headaches described above.

To start, they set up a couple of test accounts in our demo lab. These would play the role of manager and terminated employee, respectively.

Next, our demo lab’s Azure AD Connect was upgraded to the latest version. By doing this, it ensured Azure AD Connects resiliency features would come into play. With these features at their disposal, our team would be able to accurately judge whether or not these features would be the solution they predicted.

From there, the pair moved the SMTP address from the test employee account to the test manager account. Then they performed the necessary syncs. Once the move and the syncs had been completed, our Microsoft Collaboration team members analyzed the results.

The Findings

The new Azure AD Connect features did make a huge difference in account management. With the quarantine feature in place, the cumbersome, time-consuming old process was no more. Instead of nearly three hours, this process had been slashed to an average of 30 minutes total.

Under the new method, IT was able to remove an address from one account and add it to another, all on prem. Then, it came time to launch DirSync. Two syncs were still necessary to achieve the desired result. This first time through, DirSync would delete the address from the original account. A second DirSync would add it to the new account. Unlike the old arrangement, this could be executed error-free.

An added bonus of the new feature is that it also eliminates the need to reassign DirSync permissions to the folks handling maintenance. The next time DirSync is launched, it automatically recognizes the necessary movements and sorts them out itself. Once again, it does this without triggering a string of error messages.

Have a Microsoft Collaboration question of your own? Reach out to our team at mssales@arrayasolutions.com. Or get a hold of us on social media: Twitter, LinkedIn, and Facebook.

Arraya Insights
Back to Top
Arraya Solutions logo

We combine technological expertise and personal service to educate and empower our customers to solve their individual IT challenges.

518 Township Line Road
Suite 250, Blue Bell, PA 19422

p: (866) 229-6234     f: (610) 684-8655
e: info@arrayasolutions.com

  • Careers
  • Privacy Policy
  • Contact Us

© 2025 Arraya Solutions. All rights reserved.

Facebook Twitter YouTube LinkedIn
Manage Cookie Consent
We use cookies to enhance your experience. By selecting “Accept,” you agree to our cookie policy.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
Manage options Manage services Manage {vendor_count} vendors Read more about these purposes
View preferences
{title} {title} {title}