Hosting » Azure » Can Azure AD B2B users be added as members instead of guests?

Can Azure AD B2B users be added as members instead of guests?

Last updated on September 25, 2022 @ 12:35 pm

There are some scenarios where Azure Active Directory (Azure AD) B2B users might be better off as members instead of guests. When you first create a B2B account in Azure AD, you are automatically assigned a user role of “member.

” If you have a user role of “member” and you try to add a user as a guest, you will get an error message that says “The user cannot be added as a guest because they are already a member.”.

PRO TIP: No, Azure AD B2B users cannot be added as members instead of guests. Guests are given limited access to resources and cannot be given member privileges. Adding a B2B user as a member would give them full access to company resources, which could compromise security.

If you want to allow a guest to access your B2B account, you need to change the user role of the guest to “member-invitee.” This will allow the guest to access the account, but they will not have any permissions.

They will also not have any access to any of the resources in your account.

If you want to allow a guest to access your B2B account, but also want to give them some permissions, you can create a custom role for the guest. This custom role will give the guest the permissions you want, but it will not be a user role in Azure AD.

Morgan Bash

Morgan Bash

Technology enthusiast and Co-Founder of Women Coders SF.