Solved

Azure AD Connect

Posted on 2016-09-28
10
31 Views
Last Modified: 2016-11-09
Hi,

I want to connect a clean windows server 2012 on a VPS to Azure AD. Do I have to create a domain first on the server 2012 before connecting? The reason is I want to install an SQL on the server 2012 in the cloud and have users logon to on-premise pc in the office and have access to all their online services.

Some help is appriciated.

Kind regards,
0
Comment
Question by:Lufaa
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 5
  • 4
10 Comments
 
LVL 58

Accepted Solution

by:
Cliff Galiher earned 500 total points
ID: 41820819
That's the path of least resistance, yes.  Azure AD supports SAML and you could technically custom write code that ties into their APIs and get single sign-on as long as you have ADFS on-prem somewhere. But if you want to avoid coding or if you don't have ADFS, you are looking at some sort of coordination technology.
0
 
LVL 1

Author Comment

by:Lufaa
ID: 41820835
I don't think I quite understand what you are saying but now I am as far as that I cannot connect from my server 2012 with azure ad connect to my Azure AD
azure-ad-connect.JPG
0
 
LVL 58

Expert Comment

by:Cliff Galiher
ID: 41820868
AADConnect does exactly that. It "connects" ADDS (on-prem) to azure AD. Which means ADDS must be present a d accessible somewhere on the network (via layer 2, or VPN, or ezpressroute, or something.)

If you don't have ADDS then there is no reason to run AADConnect. You'd simply create new user accounts natively in azure AD.
0
SharePoint Admin?

Enable Your Employees To Focus On The Core With Intuitive Onscreen Guidance That is With You At The Moment of Need.

 
LVL 1

Author Comment

by:Lufaa
ID: 41821226
Ok, so I created a AD on the new 2012 server. I was able, after some testing and trying, to run the AADConnect but I still don't see all the Azure AD users in my server? Seems like the sync has not completed. Anything I forgot to setup or make sure is ready before doing this?
0
 
LVL 58

Expert Comment

by:Cliff Galiher
ID: 41821274
Aadconnect syncs from server to Azure AD. Not the other way around. Your azure users will *never* suddenly appear on your server.
0
 
LVL 1

Author Comment

by:Lufaa
ID: 41821309
Ok, clear. What is the best way when creating a new user, for example for creating a user which has access to my SQL instance on the 2012 server? Because as I understood, my Office 365 users can logon to their Windows 10 Pro computers with their Office 365 account and with the server 2012 being connected the same users have single sign on feature for accessing the SQL server on this 2012 server.
0
 
LVL 58

Assisted Solution

by:Cliff Galiher
Cliff Galiher earned 500 total points
ID: 41821317
There's a lot of planning and moving peices to get that working. If you don't want to change users' workflow m, you are looking at joining the devices to azure AD, ADFS, and UPN matching all your on-prem accounts, at the very least.

Given your kevel of familiarity with azure AD and AADConnect I'd suggest hiring a local azure developer to work with.
0
 
LVL 1

Author Comment

by:Lufaa
ID: 41829732
Hi Cliff,

Do you know a good one I can hire?

Kind regards
0
 
LVL 58

Expert Comment

by:Cliff Galiher
ID: 41830250
For these kinds of projects, as I said, it is often beat to hire local. Since I don't know where you are, no, I don't know anyone. Although to be fair, my answer probably will be the same even if I knew where you were.
0

Featured Post

U.S. Department of Agriculture and Acronis Access

With the new era of mobile computing, smartphones and tablets, wireless communications and cloud services, the USDA sought to take advantage of a mobilized workforce and the blurring lines between personal and corporate computing resources.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How to resolve IMCEAEX NDRs in Exchange or Exchange Online related to invalid X500 addresses.
When speed and performance are vital to revenue, companies must have complete confidence in their cloud environment.
This is Part 3 in a 3-part series on Experts Exchange to discuss error handling in VBA code written for Excel. Part 1 of this series discussed basic error handling code using VBA. http://www.experts-exchange.com/videos/1478/Excel-Error-Handlin…
how to add IIS SMTP to handle application/Scanner relays into office 365.

737 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question