官术网_书友最值得收藏!

Configure Azure AD Domain Services

To integrate a legacy application based on Kerberos authentication in an Azure infrastructure as a service (IaaS) scenario, we configure Azure AD Domain Services. In this section, we configure the basic service and integrate an active example application:

Azure AD Domain Services creation

To start the configuration, we need to specify the DNS domain name, the Azure Subscription we want to use, and the name of the Resource group:

Azure AD Domain Services configuration

When enabling Azure AD Domain Services, you will need to specify which Azure virtual network to use. We use a range 192.168.x.x/20 to configure the network:

Virtual network configuration

Add the admin account and your test user as a member of the Azure AD Domain Services Administrator group:

Azure AD Domain Services Administrator group members

The summary should look like the following:

Configuration summary

Next, you will be asked to update the DNS configuration to the addresses of your DNS servers provided by Azure AD Domain Services. In my case, these addresses were 192.168.0.4 and 192.168.0.5:

DNS configuration

The last important step that you need to complete to use the domain you have just created is to enable password synchronization:

Instructions to synchronize users

By default, Azure AD does not store the credential hashes required for Kerberos authentication. You need to populate these credential hashes in Azure AD so that users can use them to authenticate against the domain. The process can be completed by changing the password of the user. You can use the accounts after 20 minutes in Azure AD Domain Services.

You have two options: let passwords expire for all users or instruct these end users to change their passwords.

Users can use Azure AD's self-service password change mechanism from the Azure AD Access Panel page to change their passwords.

主站蜘蛛池模板: 成武县| 敦煌市| 大城县| 西丰县| 延津县| 商水县| 建宁县| 綦江县| 辛集市| 紫云| 凤凰县| 高雄市| 安化县| 乌鲁木齐市| 玛多县| 长治县| 新竹县| 齐河县| 金沙县| 广丰县| 通城县| 察隅县| 专栏| 东至县| 呼玛县| 内黄县| 墨玉县| 平顶山市| 若羌县| 乌拉特中旗| 沂水县| 德惠市| 永和县| 沙湾县| 三门峡市| 运城市| 龙南县| 凤山县| 内江市| 巴青县| 杭锦旗|