Forum Discussion
ChuaAugustine
Mar 23, 2018Copper Contributor
Azure Active Directory and ADFS
We had recently upgrade to M365 E3 with Azure AD Premium 1. We currently had ADFS configured (hybrid mode). We intended to have a back-up authentication in situation where if the AD on premise is do...
- Mar 27, 2018
No, you cant, as Azure AD is NOT any sort of replacement for "traditional" AD. You cannot "join" servers to it. You can however spin up Azure VM in the cloud and extend your on-premises AD with a DC running in Azure, and deploy AD FS as well. Take a look at the guidance here to get started: https://msdn.microsoft.com/library/azure/jj156090.aspx
ChuaAugustine
Mar 27, 2018Copper Contributor
Thank you again, Vasil for the reply. Most of our users email is
residing on cloud (O365 Exchange online). Am i correct to say that i do
not require AD FS to connect to my mail on the cloud as it can be
authenticated by the Azure AD using the same login ID and password since
I have configured the Azure AD Connect when i access them remotely
whereby for users connected on the on-premise network will require AD FS
to access to the SaaS application on the cloud?
- VasilMichevMar 28, 2018MVP
AD FS is not a requirement, it's just one of the available methods to configure in regards to authentication. AAD Connect with password sync will also allow you to use the same set of credentials, so will PTA/SSO. In general, unless you have some specific requirements, AD FS is an overkill. Especially for small organizations.