官术网_书友最值得收藏!

Multi-Azure Active Directory Integration

Sometimes you need to have multiple Azure Active Directories, for example if parts of your organization are based in China or you need to follow government regulations. For each Azure AD directory, you'll need one Azure AD Connect installation.

In a single-forest filtering scenario to multiple Azure ADs, the following needs to be done:

  • Azure AD Connect must be configured for filtering
  • DNS domain registration is only possible in a single Azure AD
  • UPNs of the users on-premises must use separate namespaces
  • Federation configuration needs to be customized
  • One Azure AD directory can enable Exchange hybrid with the on-premises AD
  • Global Address List synchronization needs to be performed through MIM 2016
  • Windows 10 devices can only be with one Azure AD tenant
  • The SSO option with the password hash synchronization and pass-through authentication activated can work only with one Azure AD tenant
  • Group and device write-back scenarios are possible

The following diagram shows the multiple Azure AD situation:

Connecting multiple Azure AD to one AD forest
It's unsupported to sync the same user to multiple Azure ADs.
主站蜘蛛池模板: 开鲁县| 太仓市| 金乡县| 宜城市| 上栗县| 镇原县| 吉水县| 历史| 孝昌县| 廊坊市| 井冈山市| 东乡族自治县| 翁源县| 探索| 莒南县| 宜兰县| 吉林省| 阿荣旗| 文水县| 龙泉市| 茶陵县| 祁连县| 临夏县| 洛扎县| 牟定县| 萨迦县| 蓬莱市| 荆门市| 阜新市| 乐亭县| 安新县| 临城县| 勃利县| SHOW| 新乡县| 静海县| 永福县| 镇江市| 明星| 南漳县| 两当县|