1 - Grant SQLM1 read access to Azure AD. 2 - Run CREATE LOGIN [email protected] FROM EXTERNAL PROVIDER on the master database. 3 - Run ALTER SERVER ROLE securityadmin ADD MEMBER [email protected]. Reference: https://docs.microsoft.com/en-us/azure/azure-sql/managed-instance/aad-security-configure-tutorial