如何配置使用Office365账户分配Azure订阅权限?
Hey there! I’ve helped folks with this exact scenario before—linking an Azure subscription originally managed by a personal Microsoft account to an Office 365 Azure AD tenant, then assigning permissions to Office 365 users. It’s totally feasible, and here’s how to pull it off step by step:
Step 1: Move your Azure subscription to your Office 365 Azure AD tenant
Right now, your Azure subscription is tied to the default Azure AD tenant that comes with your personal Microsoft account. To use Office 365 accounts for permissions, you first need to associate the subscription with your Office 365’s tenant:
- Sign into the Azure Portal using your personal Microsoft account (the one that manages the Azure subscription).
- Search for and select Subscriptions from the top navigation bar.
- Pick the subscription you want to link to your Office 365 tenant.
- On the subscription’s overview page, go to Settings > Change directory in the left sidebar.
- From the dropdown, select your Office 365 Azure AD tenant (it should appear automatically if your Office 365 tenant is properly provisioned).
- Read and confirm the warning prompt—this moves the subscription to the new tenant, and any existing role assignments from the old personal tenant will be removed (your actual Azure resources like VMs or storage won’t be affected).
Step 2: Assign Office 365 users to Azure roles
Once the subscription is in your Office 365 tenant, you can grant permissions directly to your Office 365 accounts:
- Stay signed into the Azure Portal with your personal Microsoft account (you’ll need this until you assign yourself access via an Office 365 account if needed).
- Go back to your subscription, then select Access control (IAM) from the left menu.
- Click Add > Add role assignment.
- Choose the role that matches the level of access the user needs—common options include Owner (full control), Contributor (manage resources but can’t change permissions), or more specific roles like Virtual Machine Contributor.
- Under Assign access to, select Azure AD user, group, or service principal.
- Search for the Office 365 user account you want to grant access to—they’ll show up in the results since the subscription is now in the same tenant.
- Select the user, then click Review + assign to finalize the role assignment.
Step 3: Verify access (optional but recommended)
- Have the Office 365 user sign into the Azure Portal using their Office 365 credentials.
- They should now see the Azure subscription listed under their subscriptions, and be able to perform actions based on the role you assigned.
Quick Notes to Keep in Mind
- If you want your original personal Microsoft account to still have access to the subscription after moving it to the Office 365 tenant, add it as a guest user in your Office 365 Azure AD tenant first, then assign it a role in the subscription.
- Moving the subscription to a new tenant only changes which Azure AD tenant manages permissions—your actual Azure resources remain intact and accessible.
内容的提问来源于stack exchange,提问作者markpirvine
相关产品推荐
相关产品推荐

