Automate Seamless SSO Kerberos decryption key rollover AZUREADSSOACC
Currently to automate the Kerberos SSO decryption key rollover for AZUREADSSOACC , we would need to store domain admin and tenant global admin credentials in a script or scheduled task.
This is obviously not ideal. We currently having to perform the rollover task manually each month.
Please look at how this process could be improved for automation.
Thanks for your interest on this feature. This capability is still in the pipeline. The initial estimate was obviously off and we are looking at a new timeline. We are aware of the benefit of having this rollover made automatic and the interest you have on the feature, and that’s how we are looking at it while prioritizing it against other capabilities requests.
Thanks for your patience!
Principal Program Manager
whatever happened to this?
Fred Stanley commented
It's been a year since the last Admin update on this.
Can key rollover be done from the Azure AD portal and if so, where exactly is that located?
Has the automatic key rollover feature already been implemented as an auto-update to Azure AD Connect?
Paul Youngberg commented
It's simple to automate this in Azure Automation with a Hybrid Worker on-prem. Credential is kept safe in Azure and the job can be scheduled. 500 minutes of running time is free every month.
[Deleted User] commented
4-6 months or more :)
do you have a new date for this feature?
Status please? Need this ASAP.
What is the status of this feature?
This is obviously taking longer than expected to implement (which is fine, I'd rather all the kinks ironed out before production), but can I sign up for some sort of email notification instead of me checking this thread every day?
Swaroop/Microsoft, any update on this?
Adding a comment to get updates to this thread.
Hi still plans for this to come out this summer?
Do you have any update on this? We're now at the end of April.
Is there any update on this feature?
Adding a comment to get updates to this thread...
Thanks for working on this feature to make this smoother!
Hello???? Did MS leave the room?
Gill Bates commented
CHIRP CHIRP CHIRP?
Any news - this seems like a major deficiency
Any update on the availability of this?
Folks, I am sorry about the 'radio silence'. We left this open with no update for too long without communication. I sincerely apologize for this oversight.
We made some significant changes to our plans in this area and Automation of Seamless SSO Kerberos decryption key rollover is now targeted for this summer. We will do an update to this thread in early April to update on our progress and get more specific on the date if possible.
Can we please get an update on this one?