Azure AD Domain Services integration risk

%3CLINGO-SUB%20id%3D%22lingo-sub-2012287%22%20slang%3D%22en-US%22%3EAzure%20AD%20Domain%20Services%20integration%20risk%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2012287%22%20slang%3D%22en-US%22%3E%3CP%3EGreetings%2C%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EI%20am%20looking%20to%20deploy%20Azure%20AD%20Domain%20Services%20for%20my%20company%20to%20be%20able%20to%20do%20authentication%20for%20VPNs%20and%20Wi-Fi%20networks%20for%20starters.%20We%20used%20to%20have%20a%20local%20AD%20but%20we%20turned%20it%20off%20and%20migrated%20to%20an%20Azure%20AD-only%20solution.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EI've%20been%20reading%20up%20on%20the%20setup%20documentation%20and%20I%20just%20wanted%20to%20make%20sure%20that%20the%20creation%20of%20the%20managed%20domain%20name%20for%20AAD%20DS%20won't%20screw%20things%20up%20in%20my%20company's%20case.%3C%2FP%3E%3CP%3EWe%20have%20a%20DNS%20service%20set%20up%20in%20AWS%20Route53%20which%20hosts%20a%20zone%20%3CEM%3Example.com%20%3C%2FEM%3Ethat%26nbsp%3Bresolves%20everything%20in%20our%20domain%26nbsp%3B%3CEM%3Example.com.%3C%2FEM%3E%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EIf%20we%20set%20up%20the%20new%20managed%20domain%20also%20as%26nbsp%3B%3CEM%3Example.com%2C%26nbsp%3B%3C%2FEM%3Ecan%20it%20cause%20any%20kind%20of%20interference%20for%20our%20Route53%20service%20and%20the%20rest%20of%20the%20system%3F%20I%20presume%20not%2C%20the%20interference%20can%20probably%20only%20happen%20with%20machines%20joined%20to%20that%20newly%20created%20managed%20domain%26nbsp%3B%3CEM%3Example.com.%3C%2FEM%3E%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EFor%20example%2C%20we%20also%20have%20a%20website%26nbsp%3B%3CEM%3E%3CA%20href%3D%22http%3A%2F%2Fwww.xample.com%2C%22%20target%3D%22_blank%22%20rel%3D%22noopener%20nofollow%20noreferrer%22%3Ewww.xample.com.%3C%2FA%3E%26nbsp%3B%3C%2FEM%3EFor%20some%20managed%20domain-joined%20machines%20there%20could%20be%20problems%20accessing%20the%20site%20since%26nbsp%3B%3CEM%3Example.com%26nbsp%3B%3C%2FEM%3Eresolves%20to%20something%20different%20on%20the%20internal%20DNS%20of%20the%20virtual%20network%3F%20Am%20I%20assuming%20correctly%3F%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EThe%20documentation%20overall%20is%20good%2C%20but%20I%20still%20want%20to%20double%20check%20since%20I%20don't%20want%20to%20bring%20down%20our%20Azure%20AD%2C%20since%20everything%20we%20have%20(O365%2C%20Exchange%2C%20Sharepoint%2C%20Teams...)%20depends%20on%20it.%26nbsp%3B%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EThanks%20in%20advance!%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-2012287%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EAzure%20Active%20Directory%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EDomain%20Services%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E
Occasional Contributor

Greetings,

 

I am looking to deploy Azure AD Domain Services for my company to be able to do authentication for VPNs and Wi-Fi networks for starters. We used to have a local AD but we turned it off and migrated to an Azure AD-only solution.

 

I've been reading up on the setup documentation and I just wanted to make sure that the creation of the managed domain name for AAD DS won't screw things up in my company's case.

We have a DNS service set up in AWS Route53 which hosts a zone xample.com that resolves everything in our domain xample.com.

 

If we set up the new managed domain also as xample.com, can it cause any kind of interference for our Route53 service and the rest of the system? I presume not, the interference can probably only happen with machines joined to that newly created managed domain xample.com.

 

For example, we also have a website www.xample.com. For some managed domain-joined machines there could be problems accessing the site since xample.com resolves to something different on the internal DNS of the virtual network? Am I assuming correctly?

 

The documentation overall is good, but I still want to double check since I don't want to bring down our Azure AD, since everything we have (O365, Exchange, Sharepoint, Teams...) depends on it. 

 

Thanks in advance!

0 Replies