Close Menu
Altcoinvest
    What's Hot

    ‘Highly Sophisticated,’ AI-Powered Hackers Behind Vercel Breach: CEO

    April 20, 2026

    BIP-361 Proposal Akin to Seizing Bitcoin From Users: Expert ⋆ ZyCrypto

    April 20, 2026

    Bitcoin Pulls Back Below Key Levels As Iran Tensions Rise Again

    April 20, 2026
    Facebook X (Twitter) Instagram
    Altcoinvest
    • Bitcoin
    • Altcoins
    • Exchanges
    • Youtube
    • Crypto Wallets
    • Learn Crypto
    • bitcoinBitcoin(BTC)$75,205.00-0.43%
    • ethereumEthereum(ETH)$2,309.81-0.79%
    • tetherTether(USDT)$1.00-0.01%
    • rippleXRP(XRP)$1.42-0.68%
    • binancecoinBNB(BNB)$626.690.65%
    • usd-coinUSDC(USDC)$1.00-0.02%
    • solanaSolana(SOL)$85.08-0.22%
    • tronTRON(TRX)$0.3299380.07%
    • Figure HelocFigure Heloc(FIGR_HELOC)$1.040.00%
    • dogecoinDogecoin(DOGE)$0.094684-0.01%
    Altcoinvest
    Home»Exchange»Cross-tenant synchronization in Microsoft Entra ID (Azure Active Directory)
    Cross-tenant synchronization in Microsoft Entra ID (Azure Active Directory)
    Exchange

    Cross-tenant synchronization in Microsoft Entra ID (Azure Active Directory)

    September 18, 2025
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Microsoft announced the coming of cross-tenant synchronization. The feature is supposed to enter Global Availability in June 2023, according to the 109568 Roadmap item. Cross-tenant sync has the potential to make work in multi-tenant organizations easier by automating user creation and synchronization. This article provides general information about the feature, explains what multi-tenant organizations are and how is it different from a cross-tenant migration.

    Cross-tenant synchronization in Microsoft Entra ID (Azure Active Directory)

    What is cross-tenant synchronization?

    Cross-tenant synchronization is a feature designed to simplify collaboration in multi-tenant organizations. In simple terms, it automates creation, updating and removal of B2B users across tenants within the same Microsoft 365 organization. It is similar to a hybrid environment – each synchronization has a specific source and a specific target. Users are synchronized, together with chosen attributes, to the target tenant. Instead of an on-premises and a cloud environment, you have two cloud-based environments. In the target environment, instead of remote users, you have external users.

    Cross-tenant collaboration isn’t new. AAD B2B collaboration was introduced back in 2015 for easy resource sharing, to allow guest users to access a strictly controlled “slice” of a specific Entra ID (Azure AD) tenant. Cross-tenant synchronization automates the process of provisioning such users and allows them to access Microsoft and 3rd party apps on both source and target tenant.

    Microsoft emphasizes that the feature should only be used within a multi-tenant organization, and not to enhance collaboration between partners, since it gives too broad access to the target organization. The question is, what exactly stands for a multi-tenant organization.

    What does multi-tenant organization mean?

    Multi-tenant organization is a company that has more than one Microsoft 365 tenant. While most organizations and companies have their data contained within a single tenant, there is a lot of scenarios where an organization spans over multiple AAD instances, for example:

    • Large organizations with multiple subsidiaries or business units.
    • Companies that undergo mergers or acquisitions.
    • Organizations spanning across multiple geographic locations, where it makes sense to store data in different Azure datacenters.
    • Organizations with test, staging or demo tenants.

    While the cross-tenant synchronization can help in multiple scenarios, it doesn’t always come with benefits. For example, if a Sales Team uses additional tenants to present how Microsoft 365 works together with additional 3rd party apps, there’s no point in synchronizing users from the main, production tenant. From the IT resource management point of view, it is easier to configure a single tenant using Microsoft 365 Groups instead of separate tenants.

    Cross-tenant sync prerequisites

    Creating cross-tenant synchronizations requires both source and target tenants to meet some requirements.

    • Each synchronized user requires Microsoft Entra ID P1 license.
    • Security Administrator role is required in both source and target tenants. Source tenant also requires Hybrid Identity, Cloud Application and Application Administrator roles to complete configuration.

    How to configure cross-tenant synchronization?

    You can configure cross-tenant synchronization from the Azure portal or using Graph API. For detailed instructions consult this Microsoft article.

    Cross-tenant synchronization limitations and disadvantages

    Here are some of the limitations that apply to the synchronization feature at the time of writing:

    • Only one-way sync is supported. It means that there’s always one source and one target tenant in a sync configuration. Companies with complex topologies need to set up multiple synchronization configurations with defined sets of users.
    • The target tenant isn’t queried for changes in attributes. It makes it quite easy to have differences between users in source and target tenants.
    • No support for cross-cloud sync.
    • Only Entra ID users can be synchronized (groups, devices and contacts are not supported).
    • Cross-tenant sync starts every 40 minutes.
    • External members aren’t supported in Power BI, Azure Virtual Desktop or Teams Connect shared channels.
    • Attributes synchronized to the target tenant are limited.

    Is this the end of cross-tenant migrations?

    While cross-tenant synchronization makes it easier to collaborate in multi-tenant companies, it is not a complete substitute to a cross-tenant migration. To quote this Microsoft article:

    Cross-tenant synchronization isn’t a migration tool because the source tenant is required for synchronized users to authenticate. In addition, tenant migrations would require migrating user data such as SharePoint and OneDrive.

    Right now, I wouldn’t use synchronization as a long-term solution, unless some legal regulations made me keep organization data in separate tenants. Cross-tenant migration has some clear advantages over a sync:

    • A single-tenant organization is usually much simpler to manage.
    • Migrating to a single tenant doesn’t come with all the B2B collaboration and synchronization limitations.
    • In case of mergers and acquisitions, a synchronization might provide a quick way to let users collaborate, but in the long run controlling access to resources is much quicker with security groups and conditional access policies configured in a single tenant.
    • External (guest) users need to be strictly monitored, since it’s easier to miss that an external account has been compromised.

    Read also

    How to migrate mailboxes between Office 365 tenants?

    Exchange Hybrid Configuration Wizard step by step guide

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related Posts

    How to Block Soft and Hard Match in Microsoft Entra ID

    April 7, 2026

    How to connect to Microsoft 365 with Microsoft Graph PowerShell

    March 27, 2026

    February 2026 Exchange Server Security Updates

    March 5, 2026

    How to Fix 550 5.1.10 RESOLVER.ADR.RecipientNotFound in Exchange Server

    March 5, 2026
    Add A Comment

    Comments are closed.

    Tweets by InfoAltcoinvest

    Top Posts

    How to Block Soft and Hard Match in Microsoft Entra ID

    April 7, 2026

    How to connect to Microsoft 365 with Microsoft Graph PowerShell

    March 27, 2026

    February 2026 Exchange Server Security Updates

    March 5, 2026

    Gold Falls 11%, Biggest Weekly Fall Since 1983

    March 21, 2026

    Pump.fun Admits Creator Fees Failed, Pivoting to Trader-Set Rewards

    January 10, 2026

    K-Shaped Crypto Market: Top Assets Rally as Altcoins Lag in 2026

    January 7, 2026

    This why the worse is yet to come. UNVEILING Three Arrows Capital misbehaviours and consequences

    February 5, 2026

    Altcoinvest is a leading platform dedicated to providing the latest news and insights on the dynamic world of cryptocurrencies.

    We're social. Connect with us:

    Facebook X (Twitter)
    Top Insights

    ‘Highly Sophisticated,’ AI-Powered Hackers Behind Vercel Breach: CEO

    April 20, 2026

    BIP-361 Proposal Akin to Seizing Bitcoin From Users: Expert ⋆ ZyCrypto

    April 20, 2026

    Bitcoin Pulls Back Below Key Levels As Iran Tensions Rise Again

    April 20, 2026
    Get Informed

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.


    Facebook X (Twitter)
    • Home
    • About us
    • Contact Us
    • Privacy Policy
    • Terms & Conditions
    © 2026 altcoinvest.com

    Type above and press Enter to search. Press Esc to cancel.