Windows 10: Create new UPN suffix for non domain users

Discus and support Create new UPN suffix for non domain users in Windows 10 Software and Apps to solve the problem; I have created a PowerShell script to create new users in Windows 2022 AD. The user running the script is not included in any privileged groups - but... Discussion in 'Windows 10 Software and Apps' started by Tommy Højholt, May 2, 2025 at 5:02 AM.

  1. Create new UPN suffix for non domain users


    I have created a PowerShell script to create new users in Windows 2022 AD. The user running the script is not included in any privileged groups - but has delegated rights to one organization unit. The active directory holds multiple customers - and each customer needs a specific UPN suffix.My problem is to create a new UPN in the forest for a user without special permissions - and I can't find a solution for this without giving the user to much access. Anyone have a solution?

    :)
     
    Tommy Højholt, May 2, 2025 at 5:02 AM
    #1
  2. Gendra Win User

    We can't sign you in with this credential because your domain isn't available.

    I am getting this error message while changing password of my domain account. I have alternate UPN suffixes in my AD DS, i.e. contoso.com.np as Primary domain name and contoso.com as alternate UPN suffix. Please suggest the solution for this error.
     
  3. Anurag__ Win User
    ADMT 3.2 User Migration issue

    Hi,

    I am using ADMT 3.2 inter-domain user Migration with in the forest.

    After the migration below issues are occurring:

    1. UPN suffix is getting changed- I know this is common but its not setting it to the destination domain suffix instead using one of my email domain suffix which i have manually added in UPN suffixes under Domains and Trusts.

    2. "user must change password at next logon" getting checked.

    3. While checking the creation date i found the user is showing as a newly created user at the Destination and SiDhistory is showing some values which is contradicting and of course i am doing migration and not newly creating the users in the Destination
    domain.

    checked GPO and nothing is related to this.

    checked UPNSuffix attribute for the domain if that is hardcoded somehow via GPO or OU properties but this is not the case either.

    Is there something needs to be checked at ADMT or this is related to something else, please help me with your feedback.

    Thanks,

    AS
     
  4. John_544 Win User

    Create new UPN suffix for non domain users

    Should Hybrid joined computers allow login with UPN first

    Hi, I'm looking to understand if hybrid domain joined computers should be able to logon with the users UPN in the first instance when no direct line of site to an on premises domain controller.

    We have examples at our organisation where a user is permanently based offsite and we wish to send them a brand new computer that they have not logged onto before. Currently we either ask them to come collect the computer and log onto it before taking it
    away or we set them up with a local account (really want to move away from this option).

    We have implemented hybrid domain joined computers as we cannot move away from group policy at this stage but none of our hybrid domain joined computers allow UPN login when no line of site to a domain controller. Is this normal behaviour?

    Note: UPN logon does work if line of site to a domain controller and with locally cached username.
     
Thema:

Create new UPN suffix for non domain users

Loading...
  1. Create new UPN suffix for non domain users - Similar Threads - Create UPN suffix

  2. Create new UPN suffix for non domain users

    in Windows 10 Gaming
    Create new UPN suffix for non domain users: I have created a PowerShell script to create new users in Windows 2022 AD. The user running the script is not included in any privileged groups - but has delegated rights to one organization unit. The active directory holds multiple customers - and each customer needs a...
  3. Disable Windows Terminal and Powershell for domain users Non-Admin Users

    in Windows 10 Gaming
    Disable Windows Terminal and Powershell for domain users Non-Admin Users: Hi, I am trying to disable Windows Powershell and Terminal from the GPO for the Domain Users. For cmd prompt there is a defined Administrative Template to prevent access to it.However, there is no template for Powershell , and I tried block it through "Don't Run Specified...
  4. Disable Windows Terminal and Powershell for domain users Non-Admin Users

    in Windows 10 Software and Apps
    Disable Windows Terminal and Powershell for domain users Non-Admin Users: Hi, I am trying to disable Windows Powershell and Terminal from the GPO for the Domain Users. For cmd prompt there is a defined Administrative Template to prevent access to it.However, there is no template for Powershell , and I tried block it through "Don't Run Specified...
  5. User Principal Name UPN Change Impact

    in Windows 10 Network and Sharing
    User Principal Name UPN Change Impact: We have an on-premises Active Directory with users having *** Email address is removed for privacy *** as the UPN. We need to change the UPN for the users from *** Email address is removed for privacy *** to *** Email address is removed for privacy ***. What will be the...
  6. Creating Domain User Profile Without Logging In

    in Windows Hello & Lockscreen
    Creating Domain User Profile Without Logging In: Hi All, As we become an increasingly remote workforce, I would like to get away from asking for user credentials completely and make it so I can deploy a new computer to a user without having to log into their account. It's hard for an IT Administrator to enforce the IT...
  7. how to create a new user on a domain in windows 10 pro

    in AntiVirus, Firewalls and System Security
    how to create a new user on a domain in windows 10 pro: need to install a new user on our domain we are using windows 10 pro https://answers.microsoft.com/en-us/windows/forum/all/how-to-create-a-new-user-on-a-domain-in-windows-10/01f98fc0-6351-40e1-8d06-937b5a10fc2c
  8. One profile for Domain and non-domain

    in Windows 10 Network and Sharing
    One profile for Domain and non-domain: I have a couple users that work on their laptops outside of the office but need to connect to the domain when here. When they connect it creates a new profile and they have to re-register their software licenses. They also lose access to all of their documents and such unless...
  9. Computer configuration VS user configuration (non-domain)

    in AntiVirus, Firewalls and System Security
    Computer configuration VS user configuration (non-domain): I am trying to improve my IT skills and need professional explanation about the difference between Computer configuration and user configuration? [ATTACH]...
  10. Logging in as new User in domain

    in User Accounts and Family Safety
    Logging in as new User in domain: My fully updated Win10 machine logs into my domain as "Other User" and just spins - after a restart. I've also tried to log in as an Administrator and the same thing happens. If I shut down it will let me log in normal. My pdc is a Windows Server 2012 R2 with no dns issues -...