<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>azure ad connect upgrade Archives - the Sysadmin Channel</title>
	<atom:link href="https://thesysadminchannel.com/tag/azure-ad-connect-upgrade/feed/" rel="self" type="application/rss+xml" />
	<link>https://thesysadminchannel.com/tag/azure-ad-connect-upgrade/</link>
	<description>Documenting My Life as a System Administrator</description>
	<lastBuildDate>Mon, 31 Aug 2020 04:49:13 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.3</generator>
<site xmlns="com-wordpress:feed-additions:1">144174110</site>	<item>
		<title>Azure AD Connect Best Practices Installation Guide</title>
		<link>https://thesysadminchannel.com/azure-ad-connect-best-practices-installation-guide/</link>
					<comments>https://thesysadminchannel.com/azure-ad-connect-best-practices-installation-guide/#respond</comments>
		
		<dc:creator><![CDATA[Paul Contreras]]></dc:creator>
		<pubDate>Fri, 01 May 2020 05:57:55 +0000</pubDate>
				<category><![CDATA[Azure]]></category>
		<category><![CDATA[Office365]]></category>
		<category><![CDATA[azure ad connect architecture]]></category>
		<category><![CDATA[Azure AD Connect Best Practices]]></category>
		<category><![CDATA[azure ad connect exchange hybrid deployment]]></category>
		<category><![CDATA[Azure AD Connect install guide]]></category>
		<category><![CDATA[azure ad connect staging mode]]></category>
		<category><![CDATA[azure ad connect step by step]]></category>
		<category><![CDATA[azure ad connect sync]]></category>
		<category><![CDATA[azure ad connect upgrade]]></category>
		<guid isPermaLink="false">https://thesysadminchannel.com/?p=2169</guid>

					<description><![CDATA[<p>In this day and age it&#8217;s a perfectly viable option to want to start migrating services to the cloud to not only leverage their infrastructure, but to save on costs and most importantly to save on time. In many organizations&#8230; <a href="https://thesysadminchannel.com/azure-ad-connect-best-practices-installation-guide/" class="more-link">Continue Reading <span class="meta-nav">&#8594;</span></a></p>
<p>The post <a href="https://thesysadminchannel.com/azure-ad-connect-best-practices-installation-guide/">Azure AD Connect Best Practices Installation Guide</a> appeared first on <a href="https://thesysadminchannel.com">the Sysadmin Channel</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>In this day and age it&#8217;s a perfectly viable option to want to start migrating services to the cloud to not only leverage their infrastructure, but to save on costs and most importantly to save on time. In many organizations around the world, more and more people are adopting a hybrid model where objects live in an on-premises Active Directory but function in the cloud. This model perfectly resembles the exchange hybrid model where users are onprem but are synced to Azure Active Directory and have their mailboxes in Exchange Online. Today we&#8217;re going to follow <strong>Azure AD Connect best practices</strong> to install and configure AADConnect in our lab and start migrating our users from on-premises exchange to Exchange Online.<br />
&nbsp;</p>
<p>If you&#8217;re interested in knowing the <a href="https://thesysadminchannel.com/pros-and-cons-of-exchange-online-vs-on-premise/" rel="noopener noreferrer" target="_blank">Pros and Cons Exchange Online vs Exchange On-Premise</a> then the linked article has got you covered.  All in all, I would definitely prefer having mailboxes hosted in Exchange Online over On-premise because in my opinion the pros definitely outweigh the cons. Seeing as how many organizations around the world are already using Office 365 and Exchange Online, I think that speaks volumes and at least the effort of making a test tenant going through the motions to see if it&#8217;s beneficial to you and your org.<br />
&nbsp;</p>
<p><em>The AAD Connect best practice video demo is at the end of post if you want to cut to the chase</em></p>
<h2>Azure AD Connect Best Practices Installation Guide</h2>
<p>We&#8217;ll start off by launching the aadconnect msi which you can find <a href="https://www.microsoft.com/en-us/download/details.aspx?id=47594&#038;WT.mc_id=rss_alldownloads_all" rel="noopener noreferrer" target="_blank">here</a>.</p>
<ul>
<li>In my case I like to choose <strong>customize</strong> to give me that extra flexibility</li>
</ul>
<p><a href="https://thesysadminchannel.com/wp-content/uploads/2020/08/01-AADConnect-Customize.png" target="_blank" rel="noopener noreferrer"><img fetchpriority="high" decoding="async" src="https://thesysadminchannel.com/wp-content/uploads/2020/08/01-AADConnect-Customize.png" alt="AADConnect Customize" width="1319" height="931" class="aligncenter size-full wp-image-2186" srcset="https://thesysadminchannel.com/wp-content/uploads/2020/08/01-AADConnect-Customize.png?v=1598847122 1319w, https://thesysadminchannel.com/wp-content/uploads/2020/08/01-AADConnect-Customize-1024x723.png?v=1598847122 1024w, https://thesysadminchannel.com/wp-content/uploads/2020/08/01-AADConnect-Customize-768x542.png?v=1598847122 768w" sizes="(max-width: 1319px) 100vw, 1319px" /></a><br />
&nbsp;</p>
<ul>
<li>I usually have pre-created accounts so I chose <strong>use an existing service account</strong></li>
</ul>
<p><div id="attachment_2187" style="width: 1329px" class="wp-caption aligncenter"><a href="https://thesysadminchannel.com/wp-content/uploads/2020/08/02-AADConnect-Components.png" target="_blank" rel="noopener noreferrer"><img decoding="async" aria-describedby="caption-attachment-2187" src="https://thesysadminchannel.com/wp-content/uploads/2020/08/02-AADConnect-Components.png" alt="AADConnect Components" width="1319" height="931" class="size-full wp-image-2187" srcset="https://thesysadminchannel.com/wp-content/uploads/2020/08/02-AADConnect-Components.png?v=1598847126 1319w, https://thesysadminchannel.com/wp-content/uploads/2020/08/02-AADConnect-Components-1024x723.png?v=1598847126 1024w, https://thesysadminchannel.com/wp-content/uploads/2020/08/02-AADConnect-Components-768x542.png?v=1598847126 768w" sizes="(max-width: 1319px) 100vw, 1319px" /></a><p id="caption-attachment-2187" class="wp-caption-text">For large environments with 100k+ objects, you will need a full blown SQL Server</p></div><br />
&nbsp;</p>
<ul>
<li><strong>Password Hash Synchronization</strong> is definitely the best option here so that would be my choice</li>
<li>I&#8217;ll also choose to <strong>enable single sign-on</strong> so that will be checked as well</li>
</ul>
<p><a href="https://thesysadminchannel.com/wp-content/uploads/2020/08/03-AADConnect-User-Signin.png" target="_blank" rel="noopener noreferrer"><img decoding="async" src="https://thesysadminchannel.com/wp-content/uploads/2020/08/03-AADConnect-User-Signin.png" alt="AADConnect User Signin" width="1317" height="930" class="aligncenter size-full wp-image-2188" srcset="https://thesysadminchannel.com/wp-content/uploads/2020/08/03-AADConnect-User-Signin.png?v=1598847130 1317w, https://thesysadminchannel.com/wp-content/uploads/2020/08/03-AADConnect-User-Signin-1024x723.png?v=1598847130 1024w, https://thesysadminchannel.com/wp-content/uploads/2020/08/03-AADConnect-User-Signin-768x542.png?v=1598847130 768w" sizes="(max-width: 1317px) 100vw, 1317px" /></a><br />
&nbsp;</p>
<ul>
<li>Be sure to enter in your global admin credentials to connect to your tenant</li>
<li>Connect forest and add the directory</li>
<li>Enter in your Azure AD Connect sync account</li>
<li>Watch the linked video to the end to show how to apply the exact permissions are needed</li>
</ul>
<p>&nbsp;</p>
<ul>
<li>Choose the Organization Units you want to filter</li>
<li>I would recommend only choosing where your users are located</li>
</ul>
<p><a href="https://thesysadminchannel.com/wp-content/uploads/2020/08/04-AADConnect-OU-Filter.png" target="_blank" rel="noopener noreferrer"><img decoding="async" src="https://thesysadminchannel.com/wp-content/uploads/2020/08/04-AADConnect-OU-Filter.png" alt="AADConnect OU Filter" width="1315" height="927" class="aligncenter size-full wp-image-2189" srcset="https://thesysadminchannel.com/wp-content/uploads/2020/08/04-AADConnect-OU-Filter.png?v=1598847135 1315w, https://thesysadminchannel.com/wp-content/uploads/2020/08/04-AADConnect-OU-Filter-1024x722.png?v=1598847135 1024w, https://thesysadminchannel.com/wp-content/uploads/2020/08/04-AADConnect-OU-Filter-768x541.png?v=1598847135 768w" sizes="(max-width: 1315px) 100vw, 1315px" /></a><br />
&nbsp;</p>
<ul>
<li>Leave the default if <strong>users are represented only once across all directories</strong></li>
<li>Leave the default to <strong>let Azure manage the source anchor VERY IMPORTANT!</strong></li>
</ul>
<p><a href="https://thesysadminchannel.com/wp-content/uploads/2020/08/05-AADConnect-Unique-Users.png" target="_blank" rel="noopener noreferrer"><img decoding="async" src="https://thesysadminchannel.com/wp-content/uploads/2020/08/05-AADConnect-Unique-Users.png" alt="AADConnect Unique Users" width="1319" height="929" class="aligncenter size-full wp-image-2190" srcset="https://thesysadminchannel.com/wp-content/uploads/2020/08/05-AADConnect-Unique-Users.png?v=1598847139 1319w, https://thesysadminchannel.com/wp-content/uploads/2020/08/05-AADConnect-Unique-Users-1024x721.png?v=1598847139 1024w, https://thesysadminchannel.com/wp-content/uploads/2020/08/05-AADConnect-Unique-Users-768x541.png?v=1598847139 768w" sizes="(max-width: 1319px) 100vw, 1319px" /></a><br />
&nbsp;</p>
<ul>
<li>Select Synchronize all users and devices</li>
</ul>
<ul>
<li>I have an on-premise exchange server so I&#8217;ll choose Exchange hybrid deployment</li>
<li>Password hash sync was selected earlier so that is checked</li>
<li>I also plan to utilize Self Service Password Reset (SSPR) so I&#8217;ll enable password writeback</li>
</ul>
<p><a href="https://thesysadminchannel.com/wp-content/uploads/2020/08/06-AADConnect-Optional-Features.png" target="_blank" rel="noopener noreferrer"><img decoding="async" src="https://thesysadminchannel.com/wp-content/uploads/2020/08/06-AADConnect-Optional-Features.png" alt="AADConnect Optional Features" width="1316" height="927" class="aligncenter size-full wp-image-2191" srcset="https://thesysadminchannel.com/wp-content/uploads/2020/08/06-AADConnect-Optional-Features.png?v=1598847142 1316w, https://thesysadminchannel.com/wp-content/uploads/2020/08/06-AADConnect-Optional-Features-1024x721.png?v=1598847142 1024w, https://thesysadminchannel.com/wp-content/uploads/2020/08/06-AADConnect-Optional-Features-768x541.png?v=1598847142 768w" sizes="(max-width: 1316px) 100vw, 1316px" /></a></p>
<p>Since we also enabled single sign-on the steps to enable that are also covered in the video so make sure you watch until the end.</p>
<h2>Azure AD Connect Best Practices Video Demo</h2>
<p><iframe title="Azure AD Connect Step by Step Guide to Sync Objects to Office 365" width="640" height="360" src="https://www.youtube.com/embed/38DVOrxUdzM?feature=oembed" frameborder="0" allow="accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share" referrerpolicy="strict-origin-when-cross-origin" allowfullscreen></iframe></p>
<h2>Conclusion</h2>
<p>Hopefully this video to install Azure AD Connect best practices was really helpful and allowed you to get it up and running in your own environment.  I definitely like the idea of still having the flexibility of a vertically integrated hybrid model. </p>
<p>If you want more cloud content, be sure to check out our <a href="https://thesysadminchannel.com/office365/" rel="noopener noreferrer" target="_blank">Office 365</a> and <a href="https://thesysadminchannel.com/azure/" rel="noopener noreferrer" target="_blank">Azure Active Directory</a> categories as well as our <a href="https://www.youtube.com/c/theSysadminChannel" rel="noopener noreferrer" target="_blank">Youtube Channel</a> that&#8217;s full of greate sysadmin resources.</p>
<p>The post <a href="https://thesysadminchannel.com/azure-ad-connect-best-practices-installation-guide/">Azure AD Connect Best Practices Installation Guide</a> appeared first on <a href="https://thesysadminchannel.com">the Sysadmin Channel</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://thesysadminchannel.com/azure-ad-connect-best-practices-installation-guide/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">2169</post-id>	</item>
	</channel>
</rss>
