locked
Azure Active Directory Domain Services (AD DS) use RRS feed

  • Question

  • Hi,

    Please bear with me as i have inquiry for Azure AD DS:

    1. In Azure ADDS (Managed service by Microsoft Azure) and ADDS in Azure VM (IaaS), does it have the same functionality? Like, can i manage GPO in Azure ADDS like we do in typical ADDS setup?

    2. What is more advisable to use when on premise workstation/s or users want Domain Services (traditional on premise ADDS) but server is on cloud, is it Azure ADDS or ADDS in Azure VM? (Take note that they will not be connecting to an application running on cloud).

    3. Can i do hybrid/HA of ADDS on premise and ADDS in Azure VM (Secondary Domain Controller)? Will i just need VPN connection or other configuration?

    Your answer is highly appreciated because i need it badly.

    Thank you!!

    Friday, January 10, 2020 1:36 AM

Answers

  • Hi, 

    1. You can manage GPO from Azure ADDS as well. Reference: https://docs.microsoft.com/en-us/azure/active-directory-domain-services/manage-group-policy
    2. You can just deploy a Server VM in Azure and install ADDS role and use it as a DC or if you feel that you don't want to maintain the VM where the DC is installed, you can go with Azure ADDS where Azure manages your DC. Note that Azure ADDS is costly as compared to that of DC in a VM. 
    3. You need to a Site to Site or Express Route connectivity to your Azure VNET for sure. You can install Azure AD connect to sync the user objects from On-Premises to Azure ADDS. 

    Let me know if you have any further questions. 

    Regards, 

    Msrini

    Friday, January 10, 2020 12:38 PM

All replies

  • Hi, 

    1. You can manage GPO from Azure ADDS as well. Reference: https://docs.microsoft.com/en-us/azure/active-directory-domain-services/manage-group-policy
    2. You can just deploy a Server VM in Azure and install ADDS role and use it as a DC or if you feel that you don't want to maintain the VM where the DC is installed, you can go with Azure ADDS where Azure manages your DC. Note that Azure ADDS is costly as compared to that of DC in a VM. 
    3. You need to a Site to Site or Express Route connectivity to your Azure VNET for sure. You can install Azure AD connect to sync the user objects from On-Premises to Azure ADDS. 

    Let me know if you have any further questions. 

    Regards, 

    Msrini

    Friday, January 10, 2020 12:38 PM
  • Could you help me about this : 

    Hi Everyone. I have some questions about using Azure ADDS to replace on-premise server.

    My company have 6 sites and connected to Domain Controller by VPN in main office. My manager want to using Azure ADDS services to replace DC for make sure high availability. Is it possible ? and what is pros and cons?

    I already read and research about it. But i'm still have some concerns :

                What cost i need to pay for a month :

    -Azure Active Directory Domain Services ~$109.50/month/set 
    -VPN Gateway type Basic for 6 sites is ~$26.28/month or $26.28/month for only 1 site.
    -Is that all costs i have to pay forusing a month?Anythingelse?

    Migration: - Can i migrate current users to continue log in and work without lost user profile.

    How can i manage computers in my domain ? And can i still using Unifi Radius with Azure ADDS?

    Sorry for my English.



    Friday, May 15, 2020 2:36 AM