Blog | Insights March 3, 2017

Fixing the Microsoft Azure AD Connect User Name or Password is Incorrect Error

Fixing the Microsoft Azure AD Connect User Name or Password is Incorrect Error

I was setting up a new Microsoft Azure AD subscription for someone and came across this issue. Whenever I tried to sign into Azure AD Connect with a Global Administrator account it kept saying the below error message even though I verified the user ID and password were correct:

The user name or password is incorrect. Verify your user name, and then type your password again.

Azure AD Connect "Connect to Azure AD" step showing the error "The user name or password is incorrect"

The solution to this problem is very simple. Often times when an Azure Administrator for a company sets up their Azure subscription they do it using their Microsoft account (the onmicrosoft.com one), in this example let’s say [email protected]. When you setup Azure AD you have to verify the yourcompany.com domain with a TXT record and then the next step is usually to install and setup Azure AD Connect. The problem is that Azure AD requires the Global Administrator account it uses to be unique. What is happening is that there is an account already existing in the on premises AD with the same account name as the one being used by the Microsoft account for the subscription, in this example [email protected], and this is throwing things off as Azure AD Connect attempts to bridge the on premises AD with Azure AD.

You can verify this by going to portal.azure.com and then going to your Default Directory. Go under Users and groups – All Users and find the login you are using to login to the portal with. You can see it will say the source is “Microsoft Account”:

Azure portal user profile with Source shown as "Microsoft Account" highlighted

To get around this problem, just create a sync account for Azure AD with the Global Administrator role that is unique and not in the on premises Active Directory.

1. Log into https://portal.azure.com and go to Azure Active Directory.

Azure portal dashboard at portal.azure.com with Azure Active Directory highlighted in the sidebar

2. Click on Users and groups

Azure Active Directory overview with "Users and groups" highlighted and Azure AD Connect sync not enabled

4. Click Add

Azure AD "Users and groups - All users" page with the Add button highlighted

5. Give it a Name and User Name, in this example it is [email protected] which I know does not exist in my on premises AD.

Azure AD new User form with the name "AD Connect Sync" and user name svc_adconnectsync@ (domain redacted)

6. Click on Directory Role and change it to Global Administrator, then press OK at the bottom.

Azure AD new user Directory role pane with Global administrator selected and the Ok button highlighted

7. Now hit Create to create the account.

Azure AD new user "AD Connect Sync" with the Global administrator role set and the Create button highlighted

8. Now if you check the profile for this newly created account you will see it’s Source is “Azure Active Directory”.

Azure AD profile for AD Connect Sync with Source shown as "Azure Active Directory"

9. Now go back to AD Connect and type in your new credentials and hit Next

Azure AD Connect "Connect to Azure AD" step with the new svc_adconnectsync credentials entered and Next highlighted

10. You’ll see login is successful and it will enumerate Azure AD

Azure AD Connect "Connect to Azure AD" step showing a progress bar at "Examining Domains"

11. Then the next step is to connect to Active Directory Domain Services using your on premises Enterprise Admin credentials and completing the AD Connect setup. You should have no problem going forward now.

Azure AD Connect "Connect to AD DS" step prompting for Active Directory enterprise administrator credentials

Hope this helps if you come across this issue! Please leave a comment if this helped or if you have any questions.

Author

Author avatar Jason Samuel
Share

More Articles

Security
Sep 27, 2026

Eight New NetScaler Vulnerabilities, Two Under Active Exploitation, Demand Immediate Action

John Chaisson avatar John Chaisson
Insights
Sep 24, 2026

What We Took Away from Glean:Go 2026

Author avatar Andy Quirin avatar Chris Hogan and Andy Quirin
Awards
Sep 22, 2026

Alchemy Technology Group Named Okta’s 2026 AMER Partner of the Year