Azure AD (Entra ID) join specification

David Mulder dmulder at samba.org
Fri Jan 26 16:42:42 UTC 2024


I've made some minor changes to the join document for Azure AD. 
Specifically, there was a major mistake in the TransportKey definition. 
If you're working on a join implementation, make sure you pay close 
attention to the changes. Azure accepts just about any blob in the 
TransportKey field, and doesn't perform any validation on it. This only 
becomes obvious when future responses from Azure are garbled nonsense.

-- 
David Mulder
Labs Software Engineer, Samba
SUSE
1221 S Valley Grove Way, Suite 500
Pleasant Grove, UT 84062
(P)+1 385.208.2989
dmulder at suse.com
http://www.suse.com
-------------- next part --------------
A non-text attachment was scrubbed...
Name: aad-join-spec.pdf
Type: application/pdf
Size: 69846 bytes
Desc: not available
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20240126/f2c16175/aad-join-spec.pdf>


More information about the samba-technical mailing list