I am trying to setup azure AD with Directory Services. I have everything configured fine using Domain services tied to my VNET in Azure. I also have a Site to Site tunnel configured for my VNET to my office firewall. I also use Azure AD Connect to sync my Azure AD with Office365.
My office365 and domain name configured in domain services is domain.com. My local domain at the office is domain.local. The problem I am running into is when I change the VNET to use the DNS servers provided by the Azure domain services my server disconnect and is unreachable. I then have to change the DNS back to my office domain controller and reboot the Azure VM. I can then connect again.
My guess this is happening due to the Azure domain being .com and my local domain being .local. Can anyone assist me with this. I want my Azure VM's in the VNET to be able to authenticate users from the Azure AD in case the tunnel goes down. Can I do this with Azure Domain Services or do I need to install another VM in the VNET as a domain controller to support the .local domain?