I have a question. Does anybody know what the exact off-boarding process would look like for an Azure AD user that is synchronized from an on-premise AD (Windows server AD, see picture below)?
I know what it's like for a normal Azure AD user (I got the information from here: https://www.agileit.com/news/offboarding-office-365/), but I would need to know if there are any differences (for example: differences to completely delete a user, differences in saving OneDrive content, ..).
Here is the process of offboarding a normal Azure AD user (summarized in my own words):
- Sign the user out of OneDrive (initiate sign-out in Microsoft 365 admin center)
Logging the user out of all current sessions:
- Resetting user password in the Microsoft 365 admin center: Create or generate a new password
Save mailbox content:
- Either: - Migrate the mailbox to another user - Place the mailbox on Litigation Hold (In-Place Hold, via the Exchange Admin Center) - Converting to a shared mailbox
(if the offboarding employee has a company owned mobile device) blocking and wiping the employee’s mobile device:
- Wipe data & block under Mobile devices (via Exchange Admin center)
- Block access to Office 365 data (after logging the user out of his current sessions) via Microsoft 365 admin center
- Remove the Office 365 license from the user (via Microsoft 365 admin center)
- Remove the license so the payment for it stops (via Microsoft 365 admin center)
- Deleting the user account (via Microsoft 365 admin center)
If any of you guys know any differences, please help me out. Thank you!