Introduction:
This guide explains how to create a user account for Costco employees in Active Directory (AD) and ensure it is properly synced with Microsoft 365 Admin Center. The process includes assigning the appropriate group membership, setting a permanent password, and securely communicating login credentials to the end user.
Process Description:
The goal of this process is to create and configure a Costco user account in Active Directory and integrate it with Microsoft 365. It ensures the user is added to the correct group, the password is configured properly, and login details are securely provided to the user.
Prerequisites:
-
Admin access to WTVWDCPROD1 or WTVWDCPROD2
-
Microsoft 365 Admin credentials
-
Access to Active Directory Users and Computers (ADUC)
-
User’s full name and username/email from ticket or email
-
Default temporary password (e.g., Password1)
-
Secure email method for transmitting credentials
-
Notification from Vasanthy once AUTH0 entry is completed
Gathering Materials/Resources:
-
Domain controller access (WTVWDCPROD1 or WTVWDCPROD2)
-
ADUC management console
-
Ticket/email with the new user’s details
-
Access to https://admin.microsoft.com
-
Secure email tool
-
Communication with Vasanthy for AUTH0 entry
Step-by-Step Instructions:
-
Log into a Domain Controller
-
Access WTVWDCPROD1 or WTVWDCPROD2.
-
-
Open Active Directory Users and Computers
-
Expand CPRSONLINE.COM, then CPRS-CLIENTS, and open the COSTCO folder.
-
-
Create a New User
-
Click the "New Object – User" icon.
-
Enter the first name and logon name (as provided).
-
From the dropdown, select COSTCO.COM.
-
Click Next.
-
-
Set the Password
-
Check the box for Password never expires.
-
Use a temporary password like Password1.
-
Click Finish.
-
-
Assign Group Membership
-
Locate the newly created user and double-click the account.
-
Go to the Member Of tab.
-
Click Add, search for COSTCO_USERS, click Check Names, and click OK.
-
Click Apply, then OK.
-
Important: Add Costco employees to the COSTCO_USERS group ONLY. Do NOT add them to the PEARL_USERS group.
-
Log into Microsoft 365 Admin Center
- Sign in with your admin credentials.
-
Verify Sync
-
Click Users > Active Users.
-
Search for the user. If not found, wait a few minutes and refresh.
-
-
Reset Password in AD and Microsoft 365
-
In ADUC: Right-click the user > Reset Password.
-
In Microsoft 365 Admin: Locate the user > Reset Password.
-
Always update the password in both locations.
-
-
Inform Vasanthy
-
Send the user’s full name, email/username, and password to Vasanthy so she can add them to AUTH0.
-
-
Send Secure Email to User
Once Vasanthy confirms the entry into AUTH0, send the following email:
Subject: ^^SECURE^^ CPRS Costco Credentials For Pearl Apps
To: JOHN.DOE@COSTCO.COM
Hi John,
Below is your username and password for Pearl email, Claims, and Gap. Please do not change it. This is not a temp password. The password is set up to never expire so if you change it on your end, you will not be able to access the Pearl applications. Let me know if you run into any issues. Thanks.
Username: john.doe@costco.com
PWD: #########
Update Ticket/Email
-
-
Note that the Costco account has been created.
-
Confirm info was entered into AUTH0.
-
Confirm secure email was sent.
-
Ask the POC to verify the user can access the Pearl apps.
-
Tips and Best Practices:
-
Always double-check that you are creating the user in the correct OU.
-
Confirm the domain (Costco.com) is selected from the dropdown.
-
Never assign Costco employees to the Pearl_users group.
-
Allow a few minutes for directory sync before checking in Microsoft 365.
-
Always verify the secure email before sending.
Next Steps:
-
Await confirmation from the POC that the user can log in.
-
Follow up with Vasanthy if there are delays with AUTH0 entry.
-
Retain secure email confirmation for documentation.
Disclaimer:
This guide is intended for internal use by authorized IT administrators.
Comments
0 comments
Please sign in to leave a comment.