官术网_书友最值得收藏!

Multi-Azure Active Directory Integration

Sometimes you need to have multiple Azure Active Directories, for example if parts of your organization are based in China or you need to follow government regulations. For each Azure AD directory, you'll need one Azure AD Connect installation.

In a single-forest filtering scenario to multiple Azure ADs, the following needs to be done:

  • Azure AD Connect must be configured for filtering
  • DNS domain registration is only possible in a single Azure AD
  • UPNs of the users on-premises must use separate namespaces
  • Federation configuration needs to be customized
  • One Azure AD directory can enable Exchange hybrid with the on-premises AD
  • Global Address List synchronization needs to be performed through MIM 2016
  • Windows 10 devices can only be with one Azure AD tenant
  • The SSO option with the password hash synchronization and pass-through authentication activated can work only with one Azure AD tenant
  • Group and device write-back scenarios are possible

The following diagram shows the multiple Azure AD situation:

Connecting multiple Azure AD to one AD forest
It's unsupported to sync the same user to multiple Azure ADs.
主站蜘蛛池模板: 资兴市| 平罗县| 宜州市| 翁牛特旗| 松阳县| 九台市| 永寿县| 南丰县| 兴隆县| 济源市| 梅州市| 夏津县| 乐业县| 泾源县| 苍梧县| 屯昌县| 宁乡县| 松桃| 平陆县| 乌拉特前旗| 宜君县| 临夏县| 石嘴山市| 建德市| 横山县| 上杭县| 临武县| 张家港市| 尼木县| 阿荣旗| 略阳县| 金沙县| 岱山县| 新邵县| 威远县| 福贡县| 织金县| 卓资县| 连云港市| 舞阳县| 德昌县|