2. 2
Slide
2
Session Title (Keep title BOLD) | Presenter Name (normal) | Time and Date of Session (normal) [CHANGE THIS IN THE MASTER]
Follow us:
#O365ENGAGE17
Todd Klindt
SharePoint MVP since 2006
Speaker, writer, consultant, Aquarius, Iowa Native
Fan of all Microsoft Technologies
Personal Blog: www.toddklindt.com/blog
@toddklindt
todd@toddklindt.com
Podcast: www.toddklindt.com/netcast
3. 3
Slide
3
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Agenda
⢠Hybrid Explanation
⢠Authentication
⢠Azure AD Connect Walkthrough
5. 5
Slide
5
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
What is Hybrid?
⢠The offspring of two plants or animals of different species or
varieties, such as a mule (a hybrid of a donkey and a horse)
⢠Or
⢠Private Clouds and Public Clouds
⢠On-Prem and IaaS
⢠SharePoint Server On-Prem and Office 365 / Azure /
SharePoint Online / BobaaS
6. 6
Slide
6
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Why Hybrid?
⢠Why Cloud?
⢠More Secure?
⢠Gradual move
⢠Save money
⢠Easier accessibility
⢠New Functionality
⢠Extranet situations
⢠Consultants
⢠1099
⢠Why on-prem?
⢠Not all content makes sense in
the cloud
⢠Sensitive info, like my SSN
⢠Geographic restrictions
⢠Fancy custom code
⢠Farm solutions
⢠3rd party
7. 7
Slide
7
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Baby steps
⢠Develop a plan
⢠Begin with the end in mind
⢠Phased approach is okay, even recommended
⢠Landscape is changing
9. 9
Slide
9
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Identity Bridge
Active
Directory
LDAP
Azure AD
Connect
(sync + sign on)
10. 10
Slide
10
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Defining Terminology
⢠(Windows) Active Directory
⢠User Principal Name (UPN)
⢠Azure Active Directory (AAD)
⢠Identity as a Service
⢠Hybrid
⢠DirSync
⢠ADFS
⢠Azure AD Connect (AADC)
⢠SSO
⢠The other SSO
11. 11
Slide
11
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Topology & Security
⢠ADFS vs DirSync vs Pass-Through
⢠Federation starts with synchronization
⢠Pass-through, best of both worlds?
⢠Multifactor Auth
⢠Yours or theirs
⢠Flip of a switch
12. 12
Slide
12
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Same sign on scenario
13. 13
Slide
13
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Single sign on scenario
14. 14
Slide
14
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Pass-through Auth
15. 15
Slide
15
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Active Directory core concepts and concerns
⢠FSMO roles, AD DNS, WINS, etc
⢠Dirty Directories
⢠2003 Everyone group -> 2008 Authenticated Users group
⢠IsCriticalSystemObject objects are not synced
⢠Iâm looking at you Domain Users
⢠UPN issues
⢠Schema Extensions
17. 17
Slide
17
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Assumptions
⢠Windows Active Directory Domain
⢠It works
⢠Forest and Domain Windows 2003 functional level or higher
⢠Not Single Level or dotted
⢠AD Connect Server
⢠Windows 2008 or greater
⢠Own an Internet domain and control DNS
⢠Have an Azure or Office 365 Tenant
⢠Domain admin and tenant admin creds
18. 18
Slide
18
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Before Picture
19. 19
Slide
19
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Add Internet Domain
20. 20
Slide
20
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Verify Domain
21. 21
Slide
21
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
TXT Record Shuffle
22. 22
Slide
22
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Your DNS Host
23. 23
Slide
23
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
The Easy Way
24. 24
Slide
24
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
25. 25
Slide
25
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
VerifyingâŚ
26. 26
Slide
26
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
With PowerShell
V1
New-MSOLDomain
Get-MsolDomainVerificationDns
Confirm-MsolDomain
Set-MsolDomain
V2
New-AzureADDomain
Get-AzureADDomainVerificationDnsRecord
Confirm-AzureADDomain
Set-AzureADDomain
27. 27
Slide
27
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Now, Another Word about DNS
28. 28
Slide
28
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
DIY
29. 29
Slide
29
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Function Check
30. 30
Slide
30
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Function Check
31. 31
Slide
31
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Start Syncing
32. 32
Slide
32
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Is Directory Sync Right for You?
33. 33
Slide
33
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Step 1
34. 34
Slide
34
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
More CheckingâŚ
35. 35
Slide
35
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Step 2 - HRC
36. 36
Slide
36
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
More DNS Drama
37. 37
Slide
37
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Step 3 â IDFix and AADC
38. 38
Slide
38
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
More Fixinâ
39. 39
Slide
39
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Houston, we have a problemâŚ
40. 40
Slide
40
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
On To AADC
41. 41
Slide
41
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Install and Config
42. 42
Slide
42
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Almost there
43. 43
Slide
43
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
The Pudding
50. 50
Slide
50
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Now What?
⢠The Cloud Search Service Application
⢠Introduced in the August 2015 CU for SharePoint 2013
⢠Combines on-prem Search index and SharePoint Online Search
⢠MySites / OneDrive for Business
⢠Managed Metadata
⢠SharePoint 2013 November 2016 CU or later
⢠SharePoint 2016 November 2016 Patch (Feature Pack 1) or later
⢠Self service site creation
⢠2013 March 2017 CU
⢠Hybrid picker
51. 58
Slide
58
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Downloads
⢠Tools
⢠HRC Checker
⢠IDFix
⢠Azure AD Connect
⢠PowerShell Bits
⢠Windows PowerShell cmdlets for SharePoint Online
⢠Microsoft Online Services Sign-In Assistant for IT Professionals
⢠Azure AD Module for Windows PowerShell
⢠Direct Download
⢠Azure PowerShell cmdlets
52. 59
Slide
59
Beginning Azure AD Identity for SharePoint and Office 365 Admins | Todd Klindt | 21 June 14:45 - 16:00
Follow us:
#O365ENGAGE17
Other Sessions
⢠Modern Authentication for the Office 365 Administrator
⢠DATE: June 22, 2017
⢠TIME: 14:45 - 16:00
⢠LOCATION: Room B
⢠Vasil Michev
⢠10 Questions about Hybrid Scenarios with SharePoint 2016 You
Were Afraid to Ask
⢠DATE: June 22, 2017
⢠TIME: 13:15 - 14:30
⢠LOCATION: Room C
⢠Marius Constantinescu