Solved

.LOCAL domain question ..... Office 365 Directory Sync.

Posted on 2014-10-29
3
896 Views
Last Modified: 2014-10-29
Greetings. We're using FIM with DirSync for Exchange Online Protection now, but will be moving to the full Office 365 shortly.

A recommended tool from Microsoft is IDFix.  This scans your active directory prior to a sync to identify objects that will not sync correctly to Azure AD.

IDFix notifies us that all objects with .LOCAL SMTPs will not sync correctly.

That's essentially every mail enabled object.

Question:  do we even need .LOCAL user addresses any more ?  All mail uses our fqdn, including internal.

Thanks much.
Stephen

Mail server currently is Exchange 2010 SP3.  All certs are trusted (not internally generated CA).
0
Comment
Question by:lapavoni
3 Comments
 
LVL 56

Accepted Solution

by:
Cliff Galiher earned 250 total points
ID: 40411394
Your AD domain can be .local, but there is no reason any of your users should have a .local proxyAddress.
0
 
LVL 2

Assisted Solution

by:jparedis
jparedis earned 250 total points
ID: 40412069
As Cliff said, there is no need to change the entire config of your domain. That part can continue on using .local as a suffix.

However, all the users you want to enable in Office 365 need an internet - routable UPN. (this is not entirely, through, workarounds exists, see http://vanhybrid.com/2014/04/10/windows-server-2012-r2-update-enables-adfs-to-use-alternative-login-id-possibly-removing-the-need-to-have-an-internet-routable-upn/ )

If you cannot use 2012 R2 ADFS, or you dont want to implement alternative login id, you have to follow the steps, properly described in http://technet.microsoft.com/library/jj151831.aspx#BKMK_UPN
0
 

Author Closing Comment

by:lapavoni
ID: 40412091
Thanks for the information.  We're running 2008 (functional level), but the TechNet link was useful. We already have the correct alternative UPNs, so it's just a matter of removing those .local proxy addresses from each mail-enabled account.
0

Featured Post

Why spend so long doing email signature updates?

Do you spend loads of your time carrying out email signature updates? Not very interesting are they? Don’t let signature updates get you down. Let Exclaimer Cloud - Signatures for Office 365 make managing email signatures a breeze.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
Find out what you should include to make the best professional email signature for your organization.
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
Office 365 is currently available in five editions. Three of them are for business use: Office 365 Business Essentials, Office 365 Business, and Office 365 Business Premium. Two of them are for home/personal use: Office 365 Home and Office 365 Perso…

861 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

25 Experts available now in Live!

Get 1:1 Help Now