JC_IT
asked on
Azure Active Directory
I am trying to use Azure AD Connect to sync my on-premises active directory with Azure AD to enable SSO (Single Sign On) to On-Premises Exchange OWA (Outlook Web Access) via Azure AD Application Proxy.
My on-premises domain is in the format of internal.mycompany.com. There are no public DNS records for that. Also mycompany.com is hosted by an outside vender offsite. The default domain that MS Azure created is in the format myname.onmicrosoft.com
If I try to add my internal.mycompany.com domain I am forced to verify it with public DNS records which I don't have. So the question is do I have to add my internal.mycompany.com domain to MS Azure AD or can I just sync my local AD with the default myname.onmicrosoft.com domain in Azure?
My on-premises domain is in the format of internal.mycompany.com. There are no public DNS records for that. Also mycompany.com is hosted by an outside vender offsite. The default domain that MS Azure created is in the format myname.onmicrosoft.com
If I try to add my internal.mycompany.com domain I am forced to verify it with public DNS records which I don't have. So the question is do I have to add my internal.mycompany.com domain to MS Azure AD or can I just sync my local AD with the default myname.onmicrosoft.com domain in Azure?
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
No matter echange smtp domain managed by you or vendor, you need to setup same domain as UPN with onpremise ad account and this domain you need to register with O365 / azure
Your vendor will be able to make dns record for you. if TXT record is not possible, at least you can use your MX for registration
registering local AD with .onmicrosoft.com domain will not give you SSO