DNS DNS changes required to validate domains in Office 365 UPN – User Principal Name Every user must have a UPN UPN suffixes must match a validated.

Slides:



Advertisements
Similar presentations
Office 365 Identity June 2013 Microsoft Office365 4/2/2017
Advertisements

Office 365 Identity Federation Technology Deep-Dive
Agenda AD to Windows Azure AD Sync Options Federation Architecture
Core identity scenarios Federation and synchronization 2 3 Identity management overview 1 Additional features 4.
 This session details common scenarios for deploying Office 365 services. Office 365 provides a breadth of capability, but often there is a key scenario.
Configuring SharePoint 2013 and Office 365 Hybrid – Part 1
Physical Topology Logical Topology Authentication Licensing.
Wed 10:30am – SPC152 - Migrating to SharePoint Online in Office Strategy and Best Practices Wed 1:45pm - SPC161 - Office 365 Deployment and.
Hybrid Search with SharePoint 2013 and Office 365 Brendan Griffin.
Identity management integration options for Office 365
Federated sign-in WS-Federation WS-Trust SAML 2.0 Metadata Shibboleth Graph API Synchronize accounts Authentication.
Sessions about to start – Get your rig on!. Notes from the field – Implement Hybrid Search and OneDrive for Business Chris Zhong - Microsoft Aaron Dinnage.
IT can provide users with a common identity across on-premises or cloud- based services, leveraging Windows Server Active Directory and Azure Active.
4/17/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Business Productivity Online Suite Enterprise class software delivered via subscription services hosted by Microsoft and sold with partners.
Active Directory Integration with Microsoft Office 365
Active Directory Integration with Microsoft Office 365 Ross Adams & Jono Luk Program Managers Microsoft Corporation OSP321.
Building Integrated Microsoft Office 365, SharePoint Online, and Office Solutions Using BCS and LOB Data Donovan Follette Sr. Technical.
SIM 320. Contoso customer premises AD MS Online Directory Sync Identity Services Provisioning platform Provisioning platform Lync Online Lync Online.
Introduction Please answer the survey questions posted at the end of this meeting. Let us know what sessions you want! Josh Topal at
Scenario covered in this presentation Separate credential from on- premises credential Authentication occurs via cloud directory service Does not.
OUC204. Recently Announced… Identity Integration Options 2 3 Identity Management Overview 1.
Timothy Heeney| Microsoft Corporation. Discuss the purpose of Identity Federation Explain how to implement Identity Federation Explain how Identity Federation.
5 | Microsoft Confidential 6 | Microsoft Confidential.
Single Sign-On with Microsoft Azure
Search 2013 Thierry Gasser Technical Solution Professional (TSP)
…. PrePlanPrepareMigratePost Pre- Deployment PlanPrepareMigrate Post- Deployment First Mailbox.
Cloud Identity Windows Azure Active Directory Cloud Identity & Directory SyncFederated Identity Appropriate for Smaller orgs without.
Key Considerations in Architecting Active Directory Federation Alexander Yim WSHFC NCSHA, Nashville on Sept 28 th, 2015.
Microsoft NDA Confidential Enabling users to be productive, responsibly Finding the right balance Devices & Experiences Users Want Applications and.
Microsoft ® Official Course Module 13 Implementing Windows Azure Active Directory.
Empowering people-centric IT Unified device management Access and information protection Desktop Virtualization Hybrid Identity.
Paul Andrew. Recently Announced… Identity Integration Options 2 3 Identity Management Overview 1.
Office 365 deployment choices Cutover, Staged, Hybrid What is AD FS (Active Directory Federation Services) Attribute Stores, ADFS Configuration Database.
Lync Server Private cloud / dedicated Lync Server Single domain & directory Users split – server / online Lync Hybrid Office 365 Lync Online Hosted.
DMI202 Experience Value Early New Cloud Experience Real World Benefits Broad Production Use Full Feature Value Meet your needs Deploy Enhance Pilot.
Office 365: Identity and Access Solutions Suresh Menon Technology Specialist – Office 365 Microsoft Corporation India.
Version 2.0 for Office 365. Day 1 Administering Office 365 Day 2 Administering Office 365 Office 365 Overview & InfrastructureAdministering Lync Online.
Office 365 Directory Synchronization Update: Deploying Password Sync.
ON YOUR TERMS Business needs * Enhanced by upcoming Azure IAAS features GoodBetterBest * * GoodBetterBestGoodBetterBestGoodBetterBestGoodBetterBestGoodBetterBest.
Bronze Sky customer premises AD MS Online Directory Sync Provisioning platform Provisioning platform Lync Online Lync Online SharePoint Online SharePoint.
Configuration Manager and InTune Gemeinsam oder einsam?
#SPSMX Hybrid Environments SharePoint On-premises & SharePoint Online Luis Du Solier SharePoint Premier Field Engineer Microsoft.
Identities and Azure AD Premium
Microsoft Office 365: Identity and Access Solutions
BE-com.eu Brussel, 26 april 2016 EXCHANGE 2010 HYBRID (IN THE EXCHANGE 2016 WORLD)
Agenda  Microsoft Directory Synchronization Tool  Active Directory Federation Server  ADFS Proxy  Hybrid Features – LAB.
Managing Office 365 Identities and Requirements Question Answer
 Step 2 Deployment Overview  What is DirSync?  Purpose – What does it do?  Understanding Synchronization  Understanding Coexistence  Understanding.
 What is DirSync?  Purpose – What does it do?  Understanding Synchronization  Understanding Coexistence  Demo.
ADFS - Does it Still have a Place? Fitting into the EMS puzzle Frank C. Drewes III 2016 Redmond Summit | Identity.
Private KEEP OFF! Private KEEP OFF! Open! What is a cloud? Cloud computing is a model for enabling convenient, on-demand network access to a shared.
Productivity Architect Meet Chris Bortlik Author, Blogger, Speaker.
Office 365 Migration Challenges Drew St. John 2016 Redmond Summit | Identity Without Boundaries May 24, 2016 Consultant
Protect your data Enable your users Desktop Virtualization Information protection Mobile device & application management Identity and Access Management.
Web SSO with Cloud Resources using AD Federation Services
6/1/2018 2:18 AM OSP302 Building Integrated Microsoft Office 365, SharePoint Online, and Office Solutions Using BCS and LOB Data Donovan Follette
6/17/2018 5:54 AM OSP322 Getting the best of both worlds, making the most of SharePoint hybrid search solutions Shyam Narayan Microsoft © 2013 Microsoft.
Directory Synchronization in Office 365
Microsoft Online Services Partner Deployment Training for Office 365
SharePoint Online Management and Control
Microsoft Office 365: Identity and Access Solutions
Hybrid Search Planning Implementation.
05 | AD to Windows Azure AD IT Professionals
SharePoint Online Hybrid – Configure Outbound Search
M7: New Features for Office 365 Identity Management
Office 365 Identity Management
2/27/2019 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
M6: Advanced Identity Management topics for Office 365
10 | Implementing Directory Synchronization
Presentation transcript:

DNS DNS changes required to validate domains in Office 365 UPN – User Principal Name Every user must have a UPN UPN suffixes must match a validated domain in Office 365 Users need to use UPN to log in to Office 365 Active Directory Cleanup Data cleansing: Data quality, missing attributes

StructureDescriptionConsiderations Matching domainsInternal domain and external domain are the same e.g. contoso.com No special requirements Sub-domainInternal domain is a sub-domain of the external domain e.g. corp.contoso.com Requires domains to be registered in order, primary and then sub-domains Local domain or single label domain Internal domain is not publicly “registered” e.g. contoso.local Domain ownership can’t be proved, must use a different domain: Requires all users to get new UPN Use SMTP address if possible Multiple distinct UPN suffixes in single forest Mix of users having login UPNs under different domains e.g. contoso.com and fabrikam.com ADFS QFE—to resolve this issue. Requires new switch in Windows PowerShell SupportMultipleDomain Multi-forestMultiple AD forestsContact Microsoft

Set Up ADFS Servers Set Up ADFS Proxies Implement Load Balancing Register DNS

Microsoft Online AccountsFederated IdentityExternal Sharing

Contoso Customer Premises 1. Microsoft Online IDs AD Microsoft Online Directory Sync Identity Platform Provisioning Platform Lync Online SharePoint Online Exchange Online Federation Gateway AD FS 2.0 Trust IdP Directory Store Admin Portal Authentication Platform IdP Office 365 Desktop Setup Microsoft Online Services 2. Microsoft Online IDs and DirSync 3. Federated IDs and DirSync

1. Microsoft Online IDs Appropriate for Smaller orgs without AD on-premises Pros No servers required on-premises Cons No SSO No two-factor authentication Two sets of credentials to manage with differing password policies IDs mastered in the cloud 2. Microsoft Online IDs and DirSync Appropriate for Medium/large orgs with AD on-premises Pros Users and groups mastered on-premises It enables coexistence scenarios Cons No SSO No two-factor authentication Two sets of credentials to manage with differing password policies Single server deployment 3. Federated IDs and DirSync Appropriate for Larger enterprise orgs with AD on-premises Pros SSO with corporate credentials IDs mastered on- premises Password policy controlled on-premises Two-factor authentication possible It enables coexistence scenarios Cons High availability server deployments required

Content Assessment Capture relevant metadata: Type of data Size of data Age of data Migration Planning Should I move? Should I move to online services? What should I do with: Web apps Site collections Sites Document libraries

Define the selection criteria Assess how much content is left when criteria are applied

Content, Web Parts, etc. End-User Customizations Page layouts, master pages, etc. Authored Customizations Compiled code, timer jobs, etc. Developed Customizations

ProcessData Out of the Box/Template Custom Tables Forms Lists Integrations Complex workflows Custom code

Provisioning/License impact. Users Needed for remediation Feature usage

Migration Plan Information Architecture Where Site collections Sites Managed paths Content types Content Cleanup What Exclusion criteria Inclusion criteria Everything in between Migration Tools How Small-midsize content File Explorer SharePoint Workspace Manual upload Large-scale content Staging environment Third-party tools

Self-service migration Manually Tools-based migration Manually using tools Complex migration Includes custom code Involve experts

Commitment Strong steering committee Realistic Timelines Expectation-setting Knowledge DevelopmentKnowledge management People Source system knowledgeTarget system knowledge

Wed 1:45pm – SPC218 - SharePoint Online Hybrid: Configuring BCS and Duet Online Tue 09:00am – SPC243 - Hybrid Overview Wed 3:15pm - SPC150 - Microsoft Early Learning: Moving Search to O365 and Building a Hybrid Experience Thurs 9:00am - SPC140 - Deep dive on Server to Server OAuth Identity Platform Tue 10:30am - SPC125 - Hybrid and Search in the Cloud

MySPC