Changing to .com from .country.domain.com RRS feed

  • Question

  • We have AD FS 3.0 set up with .country.domain.com, our UPN uses .domain.country but our email addresses are .domain.com. We would like to change everything to .domain.com - what is the easiest and safest way to do this - can we add it as if it were a multiple domain or would we need to switch every user's upn at once and change the domain on the UPN to .com?
    Tuesday, October 29, 2019 9:23 AM

All replies

  • Is Azure AD on the picture? Maybe you use Office 365?

    Note: Posts are provided “AS IS” without warranty of any kind, either expressed or implied, including but not limited to the implied warranties of merchantability and/or fitness for a particular purpose.

    Tuesday, October 29, 2019 12:55 PM
  • We do use Office 365. The federated domain uses country.domain.com, our UPN uses domain.country and email addresses domain.com.

    Changing the UPN to domain.com means when logging into office 365 we don't present the domain.com user with the AD FS login screen - so for this point, can I add an additional claim somehow for the domain.com upn users within the Office 365 relying party trust?

    Friday, November 8, 2019 3:47 PM
  • In addition to the below, looking at our Active Directory Domains and Trusts, we already have .com and .country set up as alternative UPN suffixes.
    Friday, November 8, 2019 3:57 PM