Avatar of jskfan
jskfan
Flag for Cyprus asked on

Using Azure AD for federation

Using Azure AD for federation

I would like to know when 2 companies decide to authenticate each other users, whether they both should be in the cloud (Azure AD) and that will be enough or they also should have ADFS on the premises:

looking at this article , there is ADFS:
https://www.sherweb.com/blog/microsoft-365/active-directory-federation-services/
1
Thank you
Active DirectoryAzure

Avatar of undefined
Last Comment
Aard Vark

8/22/2022 - Mon
Cliff Galiher

Based on the "each other's users" comment, the answer is probably neither.   But understanding what is being granted access and the type of business relationship would be helpful.
Aard Vark

I would like to know when 2 companies decide to authenticate each other users, whether they both should be in the cloud (Azure AD) and that will be enough
There is no requirement for the other side to have either ADFS or AAD to be given access your Azure AD environment. If they have their own Azure AD tenant, they can authenticate against that. If they don't, they will authenticate against your tenant as a guest or they can use say their Google account, their own Microsoft account, etc.
jskfan

ASKER
So no ADFS needed with nowadays Azure cloud implementation ?
It could be that the article posted is old..

Experts Exchange is like having an extremely knowledgeable team sitting and waiting for your call. Couldn't do my job half as well as I do without it!
James Murphy
Jeff Glover

The only reason you needed ADFS for Azure was if you were not Syncing Passwords with AADConnect (or doing passthru auth). If you have AADConnect setup with either Password Hash sync or Pass-through authentication, then you do not need ADFS (it adds clunkiness in my opinion and experience) If you have AADconnect setup properly, you can use Azure MFA easily enough.
  There may be other reasons (use 3rd party MFA solutions, etc...) to use ADFS still but it is not required.
ASKER CERTIFIED SOLUTION
Aard Vark

THIS SOLUTION ONLY AVAILABLE TO MEMBERS.
View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
See Pricing Options
Start Free Trial
GET A PERSONALIZED SOLUTION
Ask your own question & get feedback from real experts
Find out why thousands trust the EE community with their toughest problems.