Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
Solved

Azure, Office 365 and on premise Active directory sync

Posted on 2014-02-04
5
716 Views
Last Modified: 2014-11-12
Hi All,

Hopefully an easy question.

We have a populated Office 365 enterprise tenant and a brand new internal domain that is going to be put in production shortly.

The outgoing network has a very messy AD which is why we are going fresh rather migrating.

My question is, with Windows Azure can I populate my new Active Directory by syncing from Office 365?

Many thanks
0
Comment
Question by:PurpleJelly
  • 2
  • 2
5 Comments
 
LVL 40

Expert Comment

by:Vasil Michev (MVP)
ID: 39833224
What you can do is spin one DC in Azure, promote it as a DC for your domain, wait for AD replication and then if you want to, remove the on-prem DCs. It is a supported scenario and you can find a lot more information here:

http://technet.microsoft.com/library/dn509539.aspx

http://msdn.microsoft.com/en-us/library/windowsazure/jj156090.aspx
0
 

Author Comment

by:PurpleJelly
ID: 39833289
Thanks, will take a read and feedback.

Appreciate your input!
0
 
LVL 74

Accepted Solution

by:
Jeffrey Kane - TechSoEasy earned 500 total points
ID: 39834722
vasilcho's recommendation does not apply to Windows Azure Active Directory which is a cloud-based AD, and has nothing at all to do with deploying cloud servers on Windows Azure.

And to answer PurpleJelly's question, yes, you most definitely CAN sync down to your on-prem AD using Directory Sync:  http://technet.microsoft.com/library/jj573653

Jeff
0
 

Author Comment

by:PurpleJelly
ID: 39834955
Hi Jeff,

Thanks for the comment.

From that link, none of the options (as far as I can tell) indicate that all user accounts on the Office 365 tenant can be synchronised to the local on premise Active Directory. It only shows that I can sync from AD to Office 365.
0
 
LVL 74

Expert Comment

by:Jeffrey Kane - TechSoEasy
ID: 39836272
Sorry, you are right.  I have been working a lot lately with Server 2012 Essentials which does a 2-way sync.  

There are ways to get existing Office365 users into your AD though.  This blog post shows one of them:  http://blogs.4ward.it/how-to-map-onprem-active-directory-users-to-existing-office365-users/

How many users do you have overall?

Jeff
0

Featured Post

Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In the market for a new backup solution for Windows Server 2016? Follow these guidelines to get the most bang for your buck.
How to resolve IMCEAEX NDRs in Exchange or Exchange Online related to invalid X500 addresses.
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …
To add imagery to an HTML email signature, you have two options available to you. You can either add a logo/image by embedding it directly into the signature or hosting it externally and linking to it. The vast majority of email clients display l…

860 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question