Hi,
You have to use a account member of enterprise Admins and domain admins to perform this action.
*****************Please don't forget to mark this reply as answer if it help you to resolve your issue********************
This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
Hi folks,
When using Active Directory Domains and Trusts to add UPN suffixes I see the following error message:
"Windows cannot update the UPN suffixes. Insufficient access rights to perform the operation"
I am signed into a AAD DS joined server and using an AAD DS administrator account in the group "AAD DC Administrators".
The domain names I would like to add as UPN Suffixes are verified as Custom Domains in Azure AD.
Are elevated privileges required to perform this operation?
Hi,
You have to use a account member of enterprise Admins and domain admins to perform this action.
*****************Please don't forget to mark this reply as answer if it help you to resolve your issue********************
Thanks @ThameurBOURBITA,
The only account who is a member of both those groups is dcaasadmin which I did not configure so I don't have the password to. I can't find much information on that account but it seems I cannot elevate the privilege of my AAD DC Admin account without it?
Hi,
If know a password of a account member of domain admins in the root domain, you can use it to add another account in enterprise admins group.
Please don't forget to mark this reply as answer if it help you to resolve your issue
Hi, are there any updates with this case? If not, please select the appropriate response as "Answered." Otherwise please let us know how we can assist you.