ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    SSO - What Are You Using and Why?

    IT Discussion
    4
    28
    3.0k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • ObsolesceO
      Obsolesce @wrx7m
      last edited by

      @wrx7m said in SSO - What Are You Using and Why?:

      @Tim_G I don't have issues with it, per se, it is a problem with having the .local and using the extra public domain so that it effectively turns the office 365 activation/portal from someone's actual email address, [email protected] to [email protected] but using the same password. People rarely remember the difference when logging in to O365. I can't blame them.

      I see. Yeah if the AD login, domain, AND email address are all completely different... I can see the user confusion.

      I was thinking it was something like: [email protected] vs [email protected].

      wrx7mW 1 Reply Last reply Reply Quote 0
      • wrx7mW
        wrx7m @Obsolesce
        last edited by

        @Tim_G Unfortunately, it won't allow a .local because it isn't a public TLD.

        ObsolesceO 1 Reply Last reply Reply Quote 0
        • wrx7mW
          wrx7m
          last edited by

          @scottalanmiller - I can't seem to find how I would implement the Azure AD outside-in approach. I see tons of stuff on how I have already installed AADConnect and sync out.

          scottalanmillerS 1 Reply Last reply Reply Quote 0
          • scottalanmillerS
            scottalanmiller @wrx7m
            last edited by

            @wrx7m said in SSO - What Are You Using and Why?:

            @scottalanmiller - I can't seem to find how I would implement the Azure AD outside-in approach. I see tons of stuff on how I have already installed AADConnect and sync out.

            You just... use it. There's nothing to know. Shut down AD, use Azure AD.

            wrx7mW ObsolesceO 2 Replies Last reply Reply Quote 0
            • wrx7mW
              wrx7m @scottalanmiller
              last edited by

              @scottalanmiller said in SSO - What Are You Using and Why?:

              @wrx7m said in SSO - What Are You Using and Why?:

              @scottalanmiller - I can't seem to find how I would implement the Azure AD outside-in approach. I see tons of stuff on how I have already installed AADConnect and sync out.

              You just... use it. There's nothing to know. Shut down AD, use Azure AD.

              There has to be more to it. Does it migrate the existing AD domain and all the users/computers accounts? What about my on-prem Exchange 2010 server?

              scottalanmillerS 1 Reply Last reply Reply Quote 0
              • scottalanmillerS
                scottalanmiller @wrx7m
                last edited by

                @wrx7m said in SSO - What Are You Using and Why?:

                @scottalanmiller said in SSO - What Are You Using and Why?:

                @wrx7m said in SSO - What Are You Using and Why?:

                @scottalanmiller - I can't seem to find how I would implement the Azure AD outside-in approach. I see tons of stuff on how I have already installed AADConnect and sync out.

                You just... use it. There's nothing to know. Shut down AD, use Azure AD.

                There has to be more to it. Does it migrate the existing AD domain and all the users/computers accounts? What about my on-prem Exchange 2010 server?

                You move to modern email of course. You don't use Azure AD with old on prem Exchange. And no, it does not migrate, it's a new thing. You'd set it up fresh in most cases. It's not AD, you'll likely make new choices.

                1 Reply Last reply Reply Quote 1
                • scottalanmillerS
                  scottalanmiller
                  last edited by

                  Why do you have on prem old Exchange when you also have modern, hosted Exchange? What's the need for a seven year old on prem email?

                  1 Reply Last reply Reply Quote 0
                  • ObsolesceO
                    Obsolesce @wrx7m
                    last edited by

                    @wrx7m said in SSO - What Are You Using and Why?:

                    @Tim_G Unfortunately, it won't allow a .local because it isn't a public TLD.

                    Right, which is why you'd have to change the users' UPN to the new domain .com, as you mentioned earlier.

                    Because of the huge difference between the AD username and their email address, I understand the users' confusion of the change.

                    1 Reply Last reply Reply Quote 0
                    • ObsolesceO
                      Obsolesce @scottalanmiller
                      last edited by

                      @scottalanmiller said in SSO - What Are You Using and Why?:

                      @wrx7m said in SSO - What Are You Using and Why?:

                      @scottalanmiller - I can't seem to find how I would implement the Azure AD outside-in approach. I see tons of stuff on how I have already installed AADConnect and sync out.

                      You just... use it. There's nothing to know. Shut down AD, use Azure AD.

                      I think he's saying that his on-prem network would then need access to his Azure AD for user/computer authentication.

                      scottalanmillerS 1 Reply Last reply Reply Quote 1
                      • scottalanmillerS
                        scottalanmiller @Obsolesce
                        last edited by

                        @Tim_G said in SSO - What Are You Using and Why?:

                        @scottalanmiller said in SSO - What Are You Using and Why?:

                        @wrx7m said in SSO - What Are You Using and Why?:

                        @scottalanmiller - I can't seem to find how I would implement the Azure AD outside-in approach. I see tons of stuff on how I have already installed AADConnect and sync out.

                        You just... use it. There's nothing to know. Shut down AD, use Azure AD.

                        I think he's saying that his on-prem network would then need access to his Azure AD for user/computer authentication.

                        Well the users just authenticate to it. But since Azure AD comes with your hosted email, it's weird to want old on prem email to authenticate to it, too.

                        wrx7mW 1 Reply Last reply Reply Quote 0
                        • wrx7mW
                          wrx7m @scottalanmiller
                          last edited by

                          @scottalanmiller said in SSO - What Are You Using and Why?:

                          @Tim_G said in SSO - What Are You Using and Why?:

                          @scottalanmiller said in SSO - What Are You Using and Why?:

                          @wrx7m said in SSO - What Are You Using and Why?:

                          @scottalanmiller - I can't seem to find how I would implement the Azure AD outside-in approach. I see tons of stuff on how I have already installed AADConnect and sync out.

                          You just... use it. There's nothing to know. Shut down AD, use Azure AD.

                          I think he's saying that his on-prem network would then need access to his Azure AD for user/computer authentication.

                          Well the users just authenticate to it. But since Azure AD comes with your hosted email, it's weird to want old on prem email to authenticate to it, too.

                          I will be ditching my Exchange 2010 but was wondering how it would be affected by it. So what about about the rest of the on-prem servers that are all AD domain members?

                          DashrenderD scottalanmillerS 2 Replies Last reply Reply Quote 0
                          • DashrenderD
                            Dashrender @wrx7m
                            last edited by

                            @wrx7m said in SSO - What Are You Using and Why?:

                            @scottalanmiller said in SSO - What Are You Using and Why?:

                            @Tim_G said in SSO - What Are You Using and Why?:

                            @scottalanmiller said in SSO - What Are You Using and Why?:

                            @wrx7m said in SSO - What Are You Using and Why?:

                            @scottalanmiller - I can't seem to find how I would implement the Azure AD outside-in approach. I see tons of stuff on how I have already installed AADConnect and sync out.

                            You just... use it. There's nothing to know. Shut down AD, use Azure AD.

                            I think he's saying that his on-prem network would then need access to his Azure AD for user/computer authentication.

                            Well the users just authenticate to it. But since Azure AD comes with your hosted email, it's weird to want old on prem email to authenticate to it, too.

                            I will be ditching my Exchange 2010 but was wondering how it would be affected by it. So what about about the rest of the on-prem servers that are all AD domain members?

                            Yeah - this is what I'm wondering as well? Does Windows Server 2016 support Azure AD? Assuming it does, can you still get things like local network shares when using Azure AD? or does MS assume you've given that up and moved purely to OneDrive for Business?

                            1 Reply Last reply Reply Quote 1
                            • scottalanmillerS
                              scottalanmiller @wrx7m
                              last edited by

                              @wrx7m said in SSO - What Are You Using and Why?:

                              @scottalanmiller said in SSO - What Are You Using and Why?:

                              @Tim_G said in SSO - What Are You Using and Why?:

                              @scottalanmiller said in SSO - What Are You Using and Why?:

                              @wrx7m said in SSO - What Are You Using and Why?:

                              @scottalanmiller - I can't seem to find how I would implement the Azure AD outside-in approach. I see tons of stuff on how I have already installed AADConnect and sync out.

                              You just... use it. There's nothing to know. Shut down AD, use Azure AD.

                              I think he's saying that his on-prem network would then need access to his Azure AD for user/computer authentication.

                              Well the users just authenticate to it. But since Azure AD comes with your hosted email, it's weird to want old on prem email to authenticate to it, too.

                              I will be ditching my Exchange 2010 but was wondering how it would be affected by it. So what about about the rest of the on-prem servers that are all AD domain members?

                              That'll be case by case. What's an example workload?

                              wrx7mW 1 Reply Last reply Reply Quote 0
                              • wrx7mW
                                wrx7m @scottalanmiller
                                last edited by

                                @scottalanmiller said in SSO - What Are You Using and Why?:

                                @wrx7m said in SSO - What Are You Using and Why?:

                                @scottalanmiller said in SSO - What Are You Using and Why?:

                                @Tim_G said in SSO - What Are You Using and Why?:

                                @scottalanmiller said in SSO - What Are You Using and Why?:

                                @wrx7m said in SSO - What Are You Using and Why?:

                                @scottalanmiller - I can't seem to find how I would implement the Azure AD outside-in approach. I see tons of stuff on how I have already installed AADConnect and sync out.

                                You just... use it. There's nothing to know. Shut down AD, use Azure AD.

                                I think he's saying that his on-prem network would then need access to his Azure AD for user/computer authentication.

                                Well the users just authenticate to it. But since Azure AD comes with your hosted email, it's weird to want old on prem email to authenticate to it, too.

                                I will be ditching my Exchange 2010 but was wondering how it would be affected by it. So what about about the rest of the on-prem servers that are all AD domain members?

                                That'll be case by case. What's an example workload?

                                Filemaker Server, ShoreTel Server, an ERP server, File and Print servers, RDGateway/Terminal Server, vCenter, Spiceworks, PRTG, Veeam

                                1 Reply Last reply Reply Quote 0
                                • 1
                                • 2
                                • 2 / 2
                                • First post
                                  Last post