Questions tagged [azure-active-directory-ds]

Questions specifically related to Azure Active Directory Domain Services. Azure Directory DS lets you join Azure virtual machines to a domain without the need to deploy domain controllers. Questions related to Azure Active Directory, on-premises Active Directory, AD LDS, etc should all have their own tags.

Questions specifically related to Azure Active Directory Domain Services.

Azure Active Directory Domain Services lets you join Azure virtual machines to a domain without the need to deploy domain controllers. Users sign in to these virtual machines using their corporate Active Directory credentials and access resources seamlessly. To more securely administer domain-joined virtual machines, use Group Policy—an easy, familiar way to apply and enforce security baselines on all of your Azure virtual machines.

Questions related to Azure Active Directory, on-premises Active Directory, Active Directory LDS (Lightweight Directory Services), etc should all have their own tags.

More details available at https://azure.microsoft.com/en-us/services/active-directory-ds/

77 questions
1
vote
2 answers

Configure Azure AD Connect

I'm trying to set up an domain in Azure AD Connect on a Workgroup computer. The challenge that we have is, we have a dedicated domain controller for the purpose of Azure AD Connect and the other domain controllers are in a non-routable network for…
1
vote
0 answers

PXE Images Losing Active Directory Trust

I'm using a PXE booting system which relies on Windows 10 VHDs to boot from in order to image across all our clients with a clean image upon every reboot. Problem is we rely on Active Directory for users and other provisioning but our images keep…
1
vote
1 answer

Can an Azure AD guest user RDP to an Azure VM?

I've created an Azure VM and joined it to the Azure AD domain. I've enabled Azure AD login on the VM, and added users to the Azure AD AAD DC Administrators group, which is assigned the Administrator role in the VM. I can RDP to the VM as a user in…
1
vote
2 answers

Cannot join Google Cloud VM to Azure AD Domain Services

I have a multicloud setup using Azure VM's and Google Cloud VM's that are connected via a site-to-site VPN (from Azure). VPN connectivity is all working fine, however I'm now trying to join all (both Azure and Google) VM's to the same domain hosted…
1
vote
1 answer

Synchronize users and passwords from LDAPS (Novell-based) to Azure Active Directory

We are a school and have a Novell/NetIQ directory service for our local computers. Multiple services (such as Moodle) are connected over Open LDAP/LDAPS (Port 636) for user authentication. We would also like to have the same usernames/passwords for…
0
votes
1 answer

Azure AD Domain Services and LDAPS on a Sonicwall SMA appliance

I want to use LDAP authentication for SSL-VPN on a SonicWall SMA\SRA unit. Endusers will then use their Azure AD username and password when connection to VPN. Have enabled LDAPS with public CA wildcard certificate and opened port 636 for the WAN of…
0
votes
1 answer

azure ad domain services allows only one Default domain policy

We're considering moving our on-premise domain controllers to Azure, so we started testing Azure AD Domain services, we created VM in Azure, joined it to Azure Domain services, installed RSAT tools,but we noticed that only one Default domain…
overflowed
  • 105
  • 4
0
votes
1 answer

Rollover Kerberos Decryption Keys - Azure AD Connect

Our site has been running Azure AD Connect/Hybrid Azure for over a year now. I'm attempting to rollover the decryption keys this month and have been receiving this error: I've attempted to complete the following so far: Manually go through the…
0
votes
1 answer

new ADDS in Azure VM, then expose to internet

I am really new with Active Directory, and I am trying out to setup an Active Directory on a Windows 2016 Azure VM, and then expose the Controller to the Internet, so I can join a PC into the directory. Since this is only for testing purposes,…
0
votes
1 answer

Azure AD password writeback policy

This might be a silly question but when a user resets their password on azure ad, how does it make sure the password is compliant with the onpremise Group Policy which specifies number of characters etc. We have no ad controllers in azure and will…
0
votes
0 answers

Azure work account blocked when created home account with same email address

The initial situation was where I had an Azure Portal account and I still have this account (name: tojas-work, email: tojas@something.com). This account appears as a Work/School account on Azure. This account is also the admin account for an Active…
0
votes
1 answer

Establishing security trust between two domains without VPN

We have a company we recently acquired and we would like for them to access our SQL Server Analysis Services (via Excel file) on our company's domain. They are external users with separate Windows domains. I was reading about AD Forest trusts and I…
0
votes
2 answers

AD DS provisioning - The prefix of the DNS domain name must contain 15 or fewer characters

I'm trying to start deploying and learning how to use AD DS in Azure so I can see if I can get rid of the requirement to have dedicated VMs running domain services. I'm struggling right at the first step as I'm trying to setup the domain of my…
tech_london
  • 1
  • 1
  • 1
0
votes
2 answers

Unable to Join local VM to Azure domain

I have a VM in Azure running Server 2016 with Active Directory Domain Controler. (Not Azure AD! But AD role setup on a VM!) and for this I use our public domain intra.test.online (I didn't share actual domain name!) . For some reason I'm no longer…
0
votes
1 answer

Can't change password policy on Azure VM (joined to Domain Services Domain)

We have an Azure VM (Windows Server 2012 R2) using AAD DS as the domain. I have both an O365 account in the domain (used to originally join the VM to the domain) and a local admin account on the machine. I'm not able to modify the password policy…