Explanation: Box 1: Grant SQLMI1 read access to Azure AD Give required permission. Box 2: Run CREATE LOGIN.. Create a login. Box 3: RUN ALTER SERVER.. Add a user to the login created in step 2. Reference: https://docs.microsoft.com/en-us/azure/azure-sql/managed-instance/aad-security-configure-tutorial