官术网_书友最值得收藏!

Configure Azure AD Domain Services

To integrate a legacy application based on Kerberos authentication in an Azure infrastructure as a service (IaaS) scenario, we configure Azure AD Domain Services. In this section, we configure the basic service and integrate an active example application:

Azure AD Domain Services creation

To start the configuration, we need to specify the DNS domain name, the Azure Subscription we want to use, and the name of the Resource group:

Azure AD Domain Services configuration

When enabling Azure AD Domain Services, you will need to specify which Azure virtual network to use. We use a range 192.168.x.x/20 to configure the network:

Virtual network configuration

Add the admin account and your test user as a member of the Azure AD Domain Services Administrator group:

Azure AD Domain Services Administrator group members

The summary should look like the following:

Configuration summary

Next, you will be asked to update the DNS configuration to the addresses of your DNS servers provided by Azure AD Domain Services. In my case, these addresses were 192.168.0.4 and 192.168.0.5:

DNS configuration

The last important step that you need to complete to use the domain you have just created is to enable password synchronization:

Instructions to synchronize users

By default, Azure AD does not store the credential hashes required for Kerberos authentication. You need to populate these credential hashes in Azure AD so that users can use them to authenticate against the domain. The process can be completed by changing the password of the user. You can use the accounts after 20 minutes in Azure AD Domain Services.

You have two options: let passwords expire for all users or instruct these end users to change their passwords.

Users can use Azure AD's self-service password change mechanism from the Azure AD Access Panel page to change their passwords.

主站蜘蛛池模板: 新密市| 崇左市| 资源县| 汾阳市| 开化县| 横峰县| 呼和浩特市| 淳化县| 彭州市| 牙克石市| 张家川| 改则县| 长沙县| 长子县| 抚州市| 拉孜县| 蓬莱市| 饶平县| 吴江市| 南康市| 密山市| 湖州市| 建阳市| 盐亭县| 聊城市| 四子王旗| 家居| 三亚市| 郯城县| 通化县| 东城区| 桦川县| 徐闻县| 高要市| 城市| 商水县| 华坪县| 金塔县| 慈溪市| 都昌县| 壶关县|