outlook.office.com<\/a> for email via OWA and it prompts them to login and they are successful doing that but they cannot launch Word or other O365 apps.
\nAny ideas?<\/p>","upvoteCount":4,"datePublished":"2025-07-02T13:21:59.041Z","url":"https://community.spiceworks.com/t/trust-domain-o365-app-issue/1220457/1","author":{"@type":"Person","name":"richardwright","url":"https://community.spiceworks.com/u/richardwright"}},{"@type":"Answer","text":"
Sounds like DomainB users aren’t properly replicating in DomainA as expected. I’d start by checking your DNS and Domain-Trust settings first.<\/p>","upvoteCount":0,"datePublished":"2025-07-02T14:22:11.681Z","url":"https://community.spiceworks.com/t/trust-domain-o365-app-issue/1220457/2","author":{"@type":"Person","name":"Jay-Updegrove","url":"https://community.spiceworks.com/u/Jay-Updegrove"}},{"@type":"Answer","text":"
If DNS or replication was bad they would not be able to RDP and login to DomainA’s server right?<\/p>","upvoteCount":1,"datePublished":"2025-07-02T14:34:44.474Z","url":"https://community.spiceworks.com/t/trust-domain-o365-app-issue/1220457/3","author":{"@type":"Person","name":"richardwright","url":"https://community.spiceworks.com/u/richardwright"}},{"@type":"Answer","text":"
Depends on how ‘bad’ it is. But it’s a good place to start, double-check the entries are all correct and rule it out early.<\/p>","upvoteCount":1,"datePublished":"2025-07-02T14:50:34.431Z","url":"https://community.spiceworks.com/t/trust-domain-o365-app-issue/1220457/4","author":{"@type":"Person","name":"Jay-Updegrove","url":"https://community.spiceworks.com/u/Jay-Updegrove"}},{"@type":"Answer","text":"
More info needed on your infrastructure, are you running Hybrid, is there ADSync and if so to which Domain. Are you trying to run applications from Domain A with users and devices registered in Domain B<\/p>","upvoteCount":1,"datePublished":"2025-07-02T18:32:22.182Z","url":"https://community.spiceworks.com/t/trust-domain-o365-app-issue/1220457/5","author":{"@type":"Person","name":"tawandanyamkure","url":"https://community.spiceworks.com/u/tawandanyamkure"}},{"@type":"Answer","text":"
Hybrid, AD syncs with MS Entra Connect Sync for DomainA but DomainB is their own O365 tenant and I believe does the same.
\nEach domain has their own licenses but when DomainB users authenticate they are taken to their ADFS servers and MFA is triggered.<\/p>","upvoteCount":1,"datePublished":"2025-07-02T19:13:01.536Z","url":"https://community.spiceworks.com/t/trust-domain-o365-app-issue/1220457/6","author":{"@type":"Person","name":"richardwright","url":"https://community.spiceworks.com/u/richardwright"}},{"@type":"Answer","text":"
Then given that scenario it seems Domain B ADSync/Replication might need some looking at as that’s where the constant authentication issues might be happening.<\/p>","upvoteCount":1,"datePublished":"2025-07-02T20:00:07.489Z","url":"https://community.spiceworks.com/t/trust-domain-o365-app-issue/1220457/7","author":{"@type":"Person","name":"tawandanyamkure","url":"https://community.spiceworks.com/u/tawandanyamkure"}},{"@type":"Answer","text":"
login issues is that the user accounts from Domain B haven’t been successfully synchronized to Microsoft Entra ID. Ensure that Azure AD Connect is properly configured to synchronize users and groups from both Domain A and Domain B.<\/p>\n
2nd Password Hash Sync, For users to sign in directly to Entra ID (and thus Office 365), Entra ID needs the password hashes for their accounts. Verify that password hash synchronization is enabled and functioning correctly in Azure AD Connect.
\nAnother option, The DomainB not registered in Entra ID , it needs to be registered and verified within your Entra ID tenant. Check the domain registration status in the Entra ID portal.<\/p>","upvoteCount":2,"datePublished":"2025-07-03T10:21:05.275Z","url":"https://community.spiceworks.com/t/trust-domain-o365-app-issue/1220457/8","author":{"@type":"Person","name":"hankwilliams2707","url":"https://community.spiceworks.com/u/hankwilliams2707"}},{"@type":"Answer","text":"