Move from on-prem server to Azure AD

%3CLINGO-SUB%20id%3D%22lingo-sub-109245%22%20slang%3D%22en-US%22%3EMove%20from%20on-prem%20server%20to%20Azure%20AD%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-109245%22%20slang%3D%22en-US%22%3E%3CP%3EHi!%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EI'm%20looking%20for%20some%20advice%20to%20do%2C%20firstly%20I%20will%20explain%20our%20situation%3A%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EWe%20have%3A%3C%2FP%3E%3CUL%3E%3CLI%3E1%20Windows%20Server%202012%20R2%20server%2C%20that%20handles%20the%20shares%2C%20AD%20and%20GPO's.%3C%2FLI%3E%3CLI%3E14%20Office%20365%20Essentials%20licenses%20(For%20Mail%20and%20Sharepoint)%3C%2FLI%3E%3CLI%3E3%20Office%20365%20Business%20licenses%20(For%20Office)%3C%2FLI%3E%3C%2FUL%3E%3CP%3EOur%20data%20is%20at%20this%20moment%20on%20the%20local%20server%2C%20but%20we'll%20move%20everything%20into%20Sharepoint%20when%20the%20new%20Windows%2010%20update%20is%20out%2C%20that%20supports%20file%20streaming%20from%20OneDrive%20en%20Sharepoint.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3ESo%20the%20server%20now%20only%20functions%20as%20an%20AD%20with%20GPO's%2C%20nothing%20else.%20I%20would%20like%20to%20move%20this%20to%20Azure%20to%20remove%20the%20local%20server%2C%20because%20it%20has%20very%20little%20function%20then.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EI%20know%20the%20employees%20(14)%20can%20login%20with%20their%20Office%20365%20account%20on%20the%20workstations%2C%20but%20how%20do%20manage%20my%20GPOs%20and%20their%20profile%20folder%20(that's%20located%20also%20on%20the%20server).%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EThanks!%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-109245%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EAzure%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-109363%22%20slang%3D%22en-US%22%3ERe%3A%20Move%20from%20on-prem%20server%20to%20Azure%20AD%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-109363%22%20slang%3D%22en-US%22%3EJannick%2C%3CBR%20%2F%3E%3CBR%20%2F%3EYou%20could%20add%20your%20Windows10%20PC's%20in%20AzureAD%20and%20manage%20them%20with%20EMS.%20The%20Intune%20MDM%20will%20not%20give%20you%20all%20the%20options%20of%20the%20GPO%20in%20AD%20however.%20And%20personal%20folders%20can%20be%20synced%20with%20OneDrive%20for%20business.%3CBR%20%2F%3E%3CBR%20%2F%3EI'm%20not%20sure%20what%20policies%20you%20apply%20now%20with%20GPO%20and%20what%20you're%20user%20profile%20requirements%20are.%20You'll%20have%20to%20provide%20a%20little%20more%20information%20to%20asses%20whether%20EMS%20is%20a%20viable%20replacement%20for%20your%20current%20AD%20infrastructure.%3CBR%20%2F%3E%3CBR%20%2F%3EHowever%2C%20if%20you%20ask%20me%20I%20would%20sacrifice%20some%20functionality%20to%20get%20rid%20of%20the%20hassle%20of%20maintaining%20the%20AD.%20Certainly%20for%20a%20an%20organization%20of%20only%2014%20users.%3CBR%20%2F%3E%3CBR%20%2F%3EOne%20more%20comment%20though.%20Activating%20Office%20for%205%20different%20users%20with%201%20Office%20365%20Business%20license%20is%20no%20correct%20licensing.%3CBR%20%2F%3E%3CBR%20%2F%3EHope%20this%20helps!%3CBR%20%2F%3E%3CBR%20%2F%3EKarel%3CBR%20%2F%3E%3C%2FLINGO-BODY%3E
Occasional Visitor

Hi!

 

I'm looking for some advice to do, firstly I will explain our situation:

 

We have:

  • 1 Windows Server 2012 R2 server, that handles the shares, AD and GPO's.
  • 14 Office 365 Essentials licenses (For Mail and Sharepoint)
  • 3 Office 365 Business licenses (For Office)

Our data is at this moment on the local server, but we'll move everything into Sharepoint when the new Windows 10 update is out, that supports file streaming from OneDrive en Sharepoint.

 

So the server now only functions as an AD with GPO's, nothing else. I would like to move this to Azure to remove the local server, because it has very little function then.

 

I know the employees (14) can login with their Office 365 account on the workstations, but how do manage my GPOs and their profile folder (that's located also on the server).

 

Thanks!

1 Reply
Jannick,

You could add your Windows10 PC's in AzureAD and manage them with EMS. The Intune MDM will not give you all the options of the GPO in AD however. And personal folders can be synced with OneDrive for business.

I'm not sure what policies you apply now with GPO and what you're user profile requirements are. You'll have to provide a little more information to asses whether EMS is a viable replacement for your current AD infrastructure.

However, if you ask me I would sacrifice some functionality to get rid of the hassle of maintaining the AD. Certainly for a an organization of only 14 users.

One more comment though. Activating Office for 5 different users with 1 Office 365 Business license is no correct licensing.

Hope this helps!

Karel