I’m seeing a small but strange issue in an environment that has Okta, on prem AD, Azure AD and O365.
There are users in Azure/O365 with usernames using the federated domain.com, however I do not see them in on prem AD. They are classified as “in-cloud”.
So how come if I try and create another user in Azure or O365, I cannot specify the same domain.com in its username since I get an error that the domain is federated?
Set-MsolUserPrincipalName : You must provide a required property: Parameter name: FederatedUser.SourceAnchor
This indicates the user would need to be in Okta -- but the other users who are "in-cloud" and have the domain.com upn are not in Okta not AD.
That's why I'm wondering if maybe they were setup at a different time perhaps before the Domain was federated.
Is there a way to see when the Domain was federated ?