Posts

Entra ID Group integration

A few years ago, I wrote a blog post about how to use Azure Active Directory for managing users and security in Dynamics 365 for Finance and Operations. In the meantime, Microsoft renamed Azure Active Directory to Microsoft Entra ID. In my blog, I provided how to manage users and provide access permissions by using security groups on Entra ID. Access permissions in Dynamics 365 Finance and Operations are then inherited from a group user. Using this option has some downsides, mainly related to not having security roles directly assigned to the user. I contributed a new feature to the D365FO Admin Toolkit with an enhanced Entra ID group integration feature. You can read more about this new feature in this post.

Read more
Invalid Users

Starting in Microsoft Dynamics 365 F&O version 10.0.39, Microsoft enforced security guidelines for external users. Effectively, Microsoft disabled the cross-tenant access in Dynamics 365 F&O. This means that external users from a different tenant, can’t log in to Dynamics 365 unless they are created as a guest user in your own client. In this post, I will elaborate on the change, how it can impact your environments and how to setup external users correctly.

Read more

During the past years, I have seen a lot of questions about setting up users who are not part of the Azure AD tenant linked to a Dynamics 365 Finance and Operations environment. Usually, there is a simple reply by stating that the Provider field on the User details should be altered to indicate where to authenticate the user. This reply does not cover the licensing requirements, components that require an app registration in Azure AD, and users not part of an Azure AD, but having e.g. a Microsoft Account. With this post, I will provide the full details to correctly enable external users.

Read more