It will be good to see best practice to design hybrid cloud identity org structure , say if corp. had well established ad and then wants to move eventually to move to cloud in few years , how would we design org structure , most of enterprise are in this situation
Thanks for the kind words. For architecture we have only uploaded this video but for every feature a new video is in pipeline and will be uploaded soon. Thank you..!!
Hi, I thought you had a more in-depth video on AAD Connect architecture that included supported topologies & much more detail in general. I cannot find it, am I mistaken?? Thanks!
very nice video. can you post the commands to run when we make changes on the on prem ad and in the same way when we make any changes on the azure ad ?
Great Video Man, One Question I have is, What Stuff is Synced from AAD to AD, because I have read in few docs apart from Password writeback nothing is replicated from AAD to AD. PS: Correct Me if I am wrong
Hello Aqib, Please check the link mentioned below. docs.microsoft.com/en-us/azure/active-directory/hybrid/reference-connect-sync-attributes-synchronized#exchange-hybrid-writeback
@Dar Fahad -> The fundamental of setting up azure aad connect is to sync on-premise identities to the cloud, so the users can get access to all the pre-integrated SAAS application as per the assignment. Also setting up ADFS on-prem and federated identities is one of the method available for authentication.
Thanks! i have one question. For our environment i have 1 AAD server with 1 SQL (database) and also 1 AAD (Passive) Staging and 1 SQL passive. What is is here the correct steps if i do a Failover? Should i do first a Full import on Staging servers? Then Full Sync?
Full import or full sync only requird if we have done any changes to configurations e.g sync rules/ou filtering. By default all changes replicates to staging server as per sync cycle only export do not runs on staging server. If your staging server is not up to date then full import and full sync is required
Hi, Great!!! I would like to know the URLs and IPs to allow through a firewall for AAD connect outbound trafic. And also if there is a proxy, the configuration on the server side. The microsoft guide is too vague about is too general.
There are no custom links or ip's which you can add or remove, practically majority of enterprise does follow the same microsoft article, as it is only outbound connectivity which is required.
@Ashray -> Thank you for your response. Please let us know which component you want us to cover, and we will be happy to create more videos. Thank you...!!
While installing you can select PTA and from the other features section, you can also select password sync. Pass-through Authentication does not automatically failover to password hash synchronization, if there are any issues with PTA agents. SOURCE - docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-pta-faq
Anyone would become an AAD Expert if they understand this and practice a little. I would recommend people to follow this channel and utilize it.
Beautifully explained... Could express more but no words for now.
Glad you liked it
Clear Explanation...great effort
easy to understand.. thanks for helping folks struggling out there!!
Wow-what an explanation .... u rocked it...
great video, learned some useful stuff... Thanks from China.
Great explanation, simple and clear thx
Excellent explanation and demo as well. You are awesome. Thank you so much. You are doing amazing work and helping us to learn concepts.
I appreciate that!
Good Explanation, could you please go in depth like .. which component is responsible for for what
Amazing explanation...Sir... thank you
Superb, Expecting more videos
this Help Me a lot to figure it out, Thanks Brader
Very nicely documented and presented!!!
Thanks for the kind words..!!
It will be good to see best practice to design hybrid cloud identity org structure , say if corp. had well established ad and then wants to move eventually to move to cloud in few years , how would we design org structure , most of enterprise are in this situation
Bro u rock....keep making more videos!!!
Jst sbsrbd U...
Thank you!
Thank you very much, that was so helpful
Glad to hear it!
Awesome presentation
Thank you! Cheers!
Beautifully Explained
Thanks for liking
Brilliant explanation - Thank you.
I would like to know why there are three logical subdivisions in the architecture. It would be helpful to know that.
Awesome presentation...thank you!
Thanks for the kind words...!!
Very well explained!! Please share the link for other videos as well.
Thanks for the kind words.
For architecture we have only uploaded this video but for every feature a new video is in pipeline and will be uploaded soon.
Thank you..!!
Appreciate your efforts
Hi, I thought you had a more in-depth video on AAD Connect architecture that included supported topologies & much more detail in general. I cannot find it, am I mistaken?? Thanks!
Yes, thats correct, if you leae as is, then it will be similar to a class with no scenarios.... Please help us with some supported topologies...
great video
Great explanation and valuable one
Glad it was helpful!
This is very helpful
I wish there was a document like this
Nice Demo
With Azure AD Connect workflow, is there any other modifications done recently or its the same as you explained in this video?
Thanks for your video.Can you please explain explicit
very nice video.
can you post the commands to run when we make changes on the on prem ad and in the same way when we make any changes on the azure ad ?
Hello, Cam you make a video on immutableid , and also if immutableid is not visible on upn then what actions we can take. thanks
Super. What protocols and API does AAD Connect tool uses to connect Azure active directoy
All the communication between aad connect and azure ad works on https
Thank you. Also, what is the difference between exchange hybrid and azure ad connect. I am little confused
Exchange hybrid option is selected, when you have onprem exchange as well.
Good content man, keep it up! Thanks.
Thanks, will do!
Great stuff!
Thanks!
Great Video Man, One Question I have is, What Stuff is Synced from AAD to AD, because I have read in few docs apart from Password writeback nothing is replicated from AAD to AD.
PS: Correct Me if I am wrong
Hello Aqib,
Please check the link mentioned below.
docs.microsoft.com/en-us/azure/active-directory/hybrid/reference-connect-sync-attributes-synchronized#exchange-hybrid-writeback
thank you. really good
Glad you liked it!
in which phase the outgoing sync rules comes in picture?
This is a good video but why do you need AADConnect in the first place when using AD FS, if the user authentication happens on premises ?
@Dar Fahad -> The fundamental of setting up azure aad connect is to sync on-premise identities to the cloud, so the users can get access to all the pre-integrated SAAS application as per the assignment.
Also setting up ADFS on-prem and federated identities is one of the method available for authentication.
Superlike!!! Well explained
Thanks for liking
Much appreciated
Thanks! i have one question. For our environment i have 1 AAD server with 1 SQL (database) and also 1 AAD (Passive) Staging and 1 SQL passive. What is is here the correct steps if i do a Failover? Should i do first a Full import on Staging servers? Then Full Sync?
Full import or full sync only requird if we have done any changes to configurations e.g sync rules/ou filtering. By default all changes replicates to staging server as per sync cycle only export do not runs on staging server.
If your staging server is not up to date then full import and full sync is required
Excellent
Thanks
Hi,
Great!!!
I would like to know the URLs and IPs to allow through a firewall for AAD connect outbound trafic. And also if there is a proxy, the configuration on the server side. The microsoft guide is too vague about is too general.
There are no custom links or ip's which you can add or remove, practically majority of enterprise does follow the same microsoft article, as it is only outbound connectivity which is required.
Beautiful! Keep them coming:)
@Ashray -> Thank you for your response.
Please let us know which component you want us to cover, and we will be happy to create more videos.
Thank you...!!
@@ConceptsWork Not replied to my question. I doubt you were the guy who asked me to prepare on this topic and rejected me in the MS interview. Ass****
Can we use PTA & PHS in single environment.?
While installing you can select PTA and from the other features section, you can also select password sync.
Pass-through Authentication does not automatically failover to password hash synchronization, if there are any issues with PTA agents.
SOURCE - docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-pta-faq
@@ConceptsWork is there any demo video related to configuration of pta & PHS available for help?
Pass through - th-cam.com/video/kRPExiS4EwI/w-d-xo.html
Password sync - th-cam.com/video/77b-W-nvhBA/w-d-xo.html
Flawless Victory :)
Thank you !!
Vinod Gowin Thank you for your time ..!!
👌