PTA single tenant two forest

Copper Contributor

Hi,

 

I have question, i have two forest contoso.com and fabrikam.com. I plan install Azure AD Connect on contoso.com and sync contoso and fabrikam user to cloud with single tenant. My question is

  1. Can I use PTA and place PTA in two forest ? if user login to @contoso.com, login will be handle by contoso PTA server and same with fabrikam. If user login to @fabrikam.com, login will be handle by fabrikam PTA server
  2. Is there any related document that support my scenario ?

Thanks

Ichwan Z

1 Reply

Hi Ichwan,

 

Per https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-pta:

  • Multi-forest environments are supported if there are forest trusts between your AD forests and if name suffix routing is correctly configured.

Also per https://docs.microsoft.com/bs-latn-ba/Azure/active-directory/hybrid/plan-connect-topologies#multiple...

  • When you have multiple forests, all forests must be reachable by a single Azure AD Connect sync server