Categories: Office 365

Azure Active Directory Sync tool installation

&NewLine;<&excl;-- WP QUADS Content Ad Plugin v&period; 2&period;0&period;92 -->&NewLine;<div class&equals;"quads-location quads-ad2525 " id&equals;"quads-ad2525" style&equals;"float&colon;none&semi;margin&colon;0px 3px 3px 3px&semi;padding&colon;0px 0px 0px 0px&semi;" data-lazydelay&equals;"0">&NewLine;&NewLine;<&sol;div>&NewLine;&NewLine;<p>To install <strong>Azure Active Directory Sync<&sol;strong> &comma; we will have to prepare prerequisites<&sol;p>&NewLine;<&excl;-- WP QUADS Content Ad Plugin v&period; 2&period;0&period;92 -->&NewLine;<div class&equals;"quads-location quads-ad2528 " id&equals;"quads-ad2528" style&equals;"float&colon;none&semi;margin&colon;0px 3px 3px 3px&semi;padding&colon;0px 0px 0px 0px&semi;" data-lazydelay&equals;"0">&NewLine;&NewLine;<&sol;div>&NewLine;&NewLine;<&excl;-- WP QUADS Content Ad Plugin v&period; 2&period;0&period;92 -->&NewLine;<div class&equals;"quads-location quads-ad2524 " id&equals;"quads-ad2524" style&equals;"float&colon;none&semi;margin&colon;0px 3px 3px 3px&semi;padding&colon;0px 0px 0px 0px&semi;" data-lazydelay&equals;"0">&NewLine;&NewLine;<&sol;div>&NewLine;&NewLine;<&excl;-- WP QUADS Content Ad Plugin v&period; 2&period;0&period;92 -->&NewLine;<div class&equals;"quads-location quads-ad2529 " id&equals;"quads-ad2529" style&equals;"float&colon;none&semi;margin&colon;0px 3px 3px 3px&semi;padding&colon;0px 0px 0px 0px&semi;" data-lazydelay&equals;"0">&NewLine;&NewLine;<&sol;div>&NewLine;&NewLine;&NewLine;&NewLine;&NewLine;<p><a href&equals;"https&colon;&sol;&sol;technet&period;microsoft&period;com&sol;library&sol;jj151815&period;aspx&quest;f&equals;255&amp&semi;MSPPError&equals;-2147217396&num;bkmk&lowbar;installmodule">https&colon;&sol;&sol;technet&period;microsoft&period;com&sol;library&sol;jj151815&period;aspx&quest;f&equals;255&amp&semi;MSPPError&equals;-2147217396&num;bkmk&lowbar;installmodule<&sol;a><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>To prepare Azure Active Directory Sync Server&comma; you will need to download the following tools to check for users attributes on your local AD&colon;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<ol class&equals;"wp-block-list"><li><strong>Mirosoft Windows Server 2008R2&sol;2012R2<&sol;strong><&sol;li><li><strong>NetFramework 4 &lpar;For IDFIX tool to work&rpar;<&sol;strong><&sol;li><li><strong>IDFIX &lpar;to Check if there&&num;8217&semi;s any issue on AD with DirSync&rpar;<&sol;strong><&sol;li><&sol;ol>&NewLine;&NewLine;&NewLine;&NewLine;<p><strong>Note&colon;<&sol;strong><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>One of the new features that came with AADSync is that it can be installed on the DC server as well&period; but some may choose to have it on a separate server to avoid any risk&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p><strong>Software Prerequisites<&sol;strong><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p><strong>Install required tools for Azure Active Directory Connector &lpar;Dirsync&rpar;<&sol;strong><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<ol class&equals;"wp-block-list"><li>AADSYNC latest version &lpar;<a href&equals;"http&colon;&sol;&sol;www&period;google&period;com&sol;url&quest;q&equals;http&percnt;3A&percnt;2F&percnt;2Fwww&period;microsoft&period;com&percnt;2Fen-us&percnt;2Fdownload&percnt;2Fdetails&period;aspx&percnt;3Fid&percnt;3D44225&amp&semi;sa&equals;D&amp&semi;sntz&equals;1&amp&semi;usg&equals;AFQjCNG1n28zs&lowbar;BxP7ip3NqA8p1VoDRsMw" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">Download here<&sol;a>&rpar; &lpar;Version Review <a href&equals;"http&colon;&sol;&sol;www&period;google&period;com&sol;url&quest;q&equals;http&percnt;3A&percnt;2F&percnt;2Fsocial&period;technet&period;microsoft&period;com&percnt;2Fwiki&percnt;2Fcontents&percnt;2Farticles&percnt;2F18429&period;dirsync-directory-sync-tool-version-release-history&period;aspx&amp&semi;sa&equals;D&amp&semi;sntz&equals;1&amp&semi;usg&equals;AFQjCNHf9xSAi&lowbar;bQk6f07zV3V3JDwBjAXQ" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">link<&sol;a>&rpar;<&sol;li><li>Microsoft Online Services Sign-In Assistant for IT Professionals RTW <a href&equals;"http&colon;&sol;&sol;www&period;google&period;com&sol;url&quest;q&equals;http&percnt;3A&percnt;2F&percnt;2Fdownload&period;microsoft&period;com&percnt;2Fdownload&percnt;2F5&percnt;2F0&percnt;2F1&percnt;2F5017D39B-8E29-48C8-91A8-8D0E4968E6D4&percnt;2Fen&percnt;2Fmsoidcli&lowbar;64&period;msi&amp&semi;sa&equals;D&amp&semi;sntz&equals;1&amp&semi;usg&equals;AFQjCNHHMcA3i9F5UrD9kWpFJDU28SNIWg" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">&lpar;Here&rpar;<&sol;a><&sol;li><li>Azure Active Directory Module for Windows PowerShell &lpar;64-bit version&rpar; <a href&equals;"https&colon;&sol;&sol;www&period;google&period;com&sol;url&quest;q&equals;https&percnt;3A&percnt;2F&percnt;2Fbposast&period;vo&period;msecnd&period;net&percnt;2FMSOPMW&percnt;2FCurrent&percnt;2Famd64&percnt;2FAdministrationConfig-en&period;msi&amp&semi;sa&equals;D&amp&semi;sntz&equals;1&amp&semi;usg&equals;AFQjCNEsCqy7csrkKGHrQ1H7fBjpqAgWHA" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">&lpar;Here&rpar;<&sol;a><&sol;li><&sol;ol>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-xIv8JYexomQ&sol;VVH&lowbar;ACBWK4I&sol;AAAAAAAAO3c&sol;KFkTFKUTs4A&sol;s1600-h&sol;clip&lowbar;image001&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;ZPv3croAhkmu4OYqsPJWZ2bm583zxpC1iwGqJLz9rOX4MXRexnc1v4TgeB2MNovQg3xs9tOBoQS&lowbar;QQ9terkOHs8LX2DOhabqX&lowbar;mlqb1DWcgsO0TyDQ&equals;w673" alt&equals;"clip&lowbar;image001"&sol;><&sol;a> &NewLine;&NewLine;<&excl;-- WP QUADS Content Ad Plugin v&period; 2&period;0&period;92 -->&NewLine;<div class&equals;"quads-location quads-ad2526 " id&equals;"quads-ad2526" style&equals;"float&colon;none&semi;margin&colon;0px 3px 3px 3px&semi;padding&colon;0px 0px 0px 0px&semi;" data-lazydelay&equals;"0">&NewLine;&NewLine;<&sol;div>&NewLine; &NewLine;<&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>Additionally&comma; to connect and synchronize to Office 365&comma; the following prerequisites need to be installed before installing AADSYNC…<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>Install &OpenCurlyDoubleQuote;<a href&equals;"http&colon;&sol;&sol;www&period;google&period;com&sol;url&quest;q&equals;http&percnt;3A&percnt;2F&percnt;2Fgo&period;microsoft&period;com&percnt;2Ffwlink&percnt;2Fp&percnt;2F&percnt;3Flinkid&percnt;3D236297&amp&semi;sa&equals;D&amp&semi;sntz&equals;1&amp&semi;usg&equals;AFQjCNEMcZ18WA4PzPzhD4NJiUP4TfhN3w" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">Windows Azure Active Directory Module for Windows PowerShell &lpar;64-bit version&rpar;<&sol;a>”&period; It is highly recommended that this machine be restarted before installing DirSync&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>NOTE&colon; Effective October 20&comma; 2014&comma; the 32-bit version of Azure Active Directory Module for Windows PowerShell is discontinued&period; Support for the 32-bit version will no longer occur&comma; and future updates to the Azure Active Directory Module will be released only for the 64-bit version&period; We strongly recommend you install the 64-bit version to ensure future support and compatibility&period; Refer to &OpenCurlyDoubleQuote;Install the Azure AD Module” in <a href&equals;"http&colon;&sol;&sol;www&period;google&period;com&sol;url&quest;q&equals;http&percnt;3A&percnt;2F&percnt;2Ftechnet&period;microsoft&period;com&percnt;2Flibrary&percnt;2Fjj151815&period;aspx&percnt;23bkmk&lowbar;installmodule&amp&semi;sa&equals;D&amp&semi;sntz&equals;1&amp&semi;usg&equals;AFQjCNFbRIvpn46WNMdQ3Ep9BqNMJL59qA" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">Manage Azure AD using Windows PowerShell<&sol;a>&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>If DirSync is to be installed on a server with Windows 2008 R2&comma; beginning with version 1&period;0&period;6765&period;0006&comma; PowerShell 3&period;0 is required and can be installed from <a href&equals;"http&colon;&sol;&sol;www&period;google&period;com&sol;url&quest;q&equals;http&percnt;3A&percnt;2F&percnt;2Fsupport&period;microsoft&period;com&percnt;2Fkb&percnt;2F2506143&amp&semi;sa&equals;D&amp&semi;sntz&equals;1&amp&semi;usg&equals;AFQjCNEMUUeEh3T7i0dSaUXLQp59rUKpTA" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">Windows Management Framework 3&period;0<&sol;a>&semi; AND beginning with version 1&period;0&period;6985&period;000&comma; &period;NET Framework 4&period;5&period;1 is a prerequisite&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>From &lt&semi;<a href&equals;"https&colon;&sol;&sol;www&period;google&period;com&sol;url&quest;q&equals;https&percnt;3A&percnt;2F&percnt;2Foddytee&period;wordpress&period;com&percnt;2F2014&percnt;2F03&percnt;2F11&percnt;2Frequirements-for-dirsync&percnt;2F&amp&semi;sa&equals;D&amp&semi;sntz&equals;1&amp&semi;usg&equals;AFQjCNH9rcKhu0upkDmrnXJSWWbhK7TByA" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">https&colon;&sol;&sol;oddytee&period;wordpress&period;com&sol;2014&sol;03&sol;11&sol;requirements-for-dirsync&sol;<&sol;a>&gt&semi;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p><strong>Installing Netframework 4&period;5<&sol;strong><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-gbDl2PoT--w&sol;VVH&lowbar;B3b3JFI&sol;AAAAAAAAO3s&sol;KpYFskM7V1A&sol;s1600-h&sol;clip&lowbar;image002&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh4&period;googleusercontent&period;com&sol;neLjKH8Nn8up4l5lL99O5cTjcMeR3FpNRw16mddOV0NTSBCniOs557QRRtLepu59WSDbXMXHYGyWCSbvNDQrqDhoO21GMSMaUU2cR-5HQeS8LtwCEY0&equals;w572" alt&equals;"clip&lowbar;image002"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-657Qa6&lowbar;Ngas&sol;VVH&lowbar;DcBwBoI&sol;AAAAAAAAO34&sol;wANMea20U7o&sol;s1600-h&sol;clip&lowbar;image003&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;Ve9Mjwg6KFi&lowbar;frPbGH0V1uBKEveLWxW8YBm539ShU0wzSHau&lowbar;kQdyXiP-y0yXxXfezX8SEG08veBnEcSoD1gAN&lowbar;AiNhpJ5ZTtWps7IoCbQFOANYmqKM&equals;w572" alt&equals;"clip&lowbar;image003"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>Once you download IDFIX&comma; you have to unzip and run the exe tool<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>Right click on Idfix and run it as administrator to give it the required privileges to access AD users and groups&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-h7sVntFtRgE&sol;VVH&lowbar;Ew4hDUI&sol;AAAAAAAAO4M&sol;YqdwWme2x0o&sol;s1600-h&sol;image&percnt;25255B2&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh5&period;googleusercontent&period;com&sol;N-LD173fSQndMMvi&lowbar;mjFT8jtNX1Bke1WA9DHo2-5bYhoeWXe-2ak0kpFC5MVt23fYV7hcB8hEhtxuKgyp1ggWqfPXde3sO531CycmrW&lowbar;hMZz0iY9Xv10&equals;w673" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>After you run it&comma; it must look like the following<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-9xKTw6dbd2Y&sol;VVH&lowbar;GTXcsQI&sol;AAAAAAAAO4c&sol;p-cqDLuutj4&sol;s1600-h&sol;clip&lowbar;image004&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh6&period;googleusercontent&period;com&sol;4OWPaivhCy04zW5QHvu9VRP9ZAbYXtz6tEWDau&lowbar;1uv9NkTKfvomcc4HNFvCmiAgILwOqfDmxZU-kmhq2aXWBye9CfhZuQvy1ujfYXhGPPJwRvoKOcHIk&equals;w673" alt&equals;"clip&lowbar;image004"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>After running the tool you will have to click on<strong> Query<&sol;strong> to get the problematic users&sol;groups and solve the ones that you want them to be synced to Office 365 Azure AD&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p><strong>Top Level Domain&colon;<&sol;strong><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>The most common issue that occurs when preparing for AADSYNC is the Top Level domain users related errors &lpar;If &period;local is used&rpar;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-5We7H4juhX0&sol;VVH&lowbar;II&lowbar;zlMI&sol;AAAAAAAAO4s&sol;KUTuXAj4PYs&sol;s1600-h&sol;clip&lowbar;image005&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh6&period;googleusercontent&period;com&sol;&lowbar;bdApfNt86EBWKdcXmJbHLgE&lowbar;zboc6dOtVVsmq81k9A8u8y9TSfUeNlfNg2G8ln9ZQxfhE1lr7Vc6Le8bj2cAz2Qxzp2Nmw59CTmbEb3zlCMNZZpACE&equals;w673" alt&equals;"clip&lowbar;image005"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>To Fix this issue for all the users&sol;groups which will be synced to O365 you will have to open <strong>Active Directory Domains and Trusts&colon;<&sol;strong><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p><strong>Right click on Active directory domains and trusts and click properties then add your public domain to the Alternative UPN Suffixes&colon;<&sol;strong><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-TFnEfdAaRIA&sol;VVH&lowbar;JcBXHAI&sol;AAAAAAAAO44&sol;iQRrYl2BuKA&sol;s1600-h&sol;image&percnt;25255B5&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;tfy9W23YP4xUqghuyBoe2&lowbar;zGxNRaMXb2Vns3&lowbar;BDNOi4-8Z1E6DyVrknLjh798K0iuYSmXjCq40Hw8bJ21q69ZkAWXqDvG8OVCzWSQWLCDKU53qk2EkI&equals;w472" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-2pV52iDffXA&sol;VVH&lowbar;K6lkC8I&sol;AAAAAAAAO5M&sol;7MI74vWkuxc&sol;s1600-h&sol;image&percnt;25255B8&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh6&period;googleusercontent&period;com&sol;qFT1ouC0pVqYX9oGz&lowbar;0nazF7ltf6G8Ug9YQmoNH9LK5zLmV5&lowbar;ZkAtQcfUw&lowbar;xnEoQIhOJ8XGWiSTKhD3anFynDb0GOxtXUWuAYc06ZPAoQvQzvFt&lowbar;NCU&equals;w371" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>Next open Active directory users and computers to change the UPN to the correct one that matches your public domain&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p><strong>Note&colon;<&sol;strong><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p><strong>Changing the domain suffix for your users suffixes won’t affect their login to their machines or any other application server&period;<&sol;strong><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-I7ZeJOC1u88&sol;VVH&lowbar;MjnkTKI&sol;AAAAAAAAO5c&sol;CxmRxmAczQQ&sol;s1600-h&sol;image&percnt;25255B11&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;poY4OsIiKSApwYQgxvcjic7EKWYZKrC9h1EgkFemC8YPWVgJjMp&lowbar;xBnKz9ARLbHIWsYeNtOlKn5IjM5Mg1Wm6uLLwGrRomhCqePqlc6g&lowbar;tUYISgvTiZe&equals;w371" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>Select the users in which OU that you want it to be synced and right click and choose Properties&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-S1c&lowbar;nr6REH8&sol;VVH&lowbar;OjC0agI&sol;AAAAAAAAO5s&sol;5JQfR3&lowbar;&lowbar;GmU&sol;s1600-h&sol;image&percnt;25255B14&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh5&period;googleusercontent&period;com&sol;std8Hr-zFo47zmLWr2dx7vzgTD7ov&fjlig;0z1e0pDmcS472yj39zPLbOlBFQxF4STL2262iWVE-Iqy8uNAex6cYsM6jptPC9g8&lowbar;J0Fmeu-D&lowbar;2hvhv3qFxE&equals;w371" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-68Y9wSdXNLU&sol;VVH&lowbar;QBEhA7I&sol;AAAAAAAAO58&sol;V29HCfPM8pc&sol;s1600-h&sol;image&percnt;25255B20&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh6&period;googleusercontent&period;com&sol;zhwy0HjpLq4wJGErSNyzZvsAv0QLE0X43FsegMslFqOK2v2du4OmQpr2jU9nWHcCgmLRfuiM5T4o8WHsUEdeD0APQxDAl9P4TxX9F0r1V7LUkIFV0ig&equals;w371" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-rO38xrqU0-s&sol;VVH&lowbar;RzGJD3I&sol;AAAAAAAAO6M&sol;Q8CSZixsSdc&sol;s1600-h&sol;image&percnt;25255B23&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh4&period;googleusercontent&period;com&sol;36U-Lp7qykU9bD8LMPY-NT8A7FLUkiCrUvj7kmcYXeN&lowbar;eq2mUbCeySPLteQpgE8VnRAVMr4OlQWSM&lowbar;YCYFy2abh71Qb2PTndaAq7Ot9Z8V9OH2MdUNA&equals;w673" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p><strong>Proxy Address&colon;<&sol;strong><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>You might as well face another issue with users that you intend to sync to Office 365 which is the SMTP proxy address&period; in some Exchange Organizations the e-mail policy might be set wrong and therefore the user might have an invalid domain value in his proxyaddress attribute e&period;g&period; <a href&equals;"mailto&colon;user&commat;domain&period;local" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">user&commat;domain&period;local<&sol;a><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>To solve this&comma; there are 3 ways to solve it&period; First would be to use Exchange on-premises Email policy to delete the &period;local SMTP proxy and set the public domain one&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>The other two ways would be that you delete the proxyaddress manually or with a powershell script &period; I personally prefer to do this manually due to avoid any risk that it may impose on the users objects&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>Another method would be the IDFIX it self or Admodify&period;<&sol;p>&NewLine;<&excl;-- WP QUADS Content Ad Plugin v&period; 2&period;0&period;92 -->&NewLine;<div class&equals;"quads-location quads-ad2522 " id&equals;"quads-ad2522" style&equals;"float&colon;none&semi;margin&colon;0px 3px 3px 3px&semi;padding&colon;0px 0px 0px 0px&semi;" data-lazydelay&equals;"0">&NewLine;&NewLine;<&sol;div>&NewLine;&NewLine;&NewLine;&NewLine;&NewLine;<p>In the below snapshot I used IDFIX to fix the proxyaddress of the problematic users&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-JAbI-TxQGdQ&sol;VVH&lowbar;T6N062I&sol;AAAAAAAAO6c&sol;PZBiXse3Wo4&sol;s1600-h&sol;clip&lowbar;image008&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;WFH1IszgpMiNqJPV8bn1i3QRbEmtH67Ru8oJxtugV6Ay3o0EhFRl7Kn2rrv0fqG5rTElYqr-Yk6sYCadgfI9FqdU0YKjnUqqkj-BkvGtYJeSA&lowbar;4xkzY&equals;w673" alt&equals;"clip&lowbar;image008"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p><strong>Installation of ADDSYNC<&sol;strong> <&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>First we&&num;8217&semi;ll install Microsoft Online Services Sign-In Assistant for IT Professionals RTW…<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-PuAhNMs1OJM&sol;VVH&lowbar;VObYR&lowbar;I&sol;AAAAAAAAO6s&sol;8u17UywpSTw&sol;s1600-h&sol;clip&lowbar;image009&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh6&period;googleusercontent&period;com&sol;RNsmUyxpGCRFDYoxYFyo1iA6F8FDQ5k7MBnUOaUq9XdfBg3AihiuxVOKVJkAn1se1rJdIRkY6FcyKL8cL02TyE89v2UXWaqqkob0hLv1CDBqDKBzVgu0&equals;w572" alt&equals;"clip&lowbar;image009"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>Next Windows Azure AD powershell module<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-MWkn988qcFo&sol;VVH&lowbar;XE6e9aI&sol;AAAAAAAAO64&sol;SzAImi3ITs8&sol;s1600-h&sol;clip&lowbar;image010&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh6&period;googleusercontent&period;com&sol;JvReuvYvbEL90uZdj4jNlGgJjT9B0kqfRmTg6kmQEMNtBY68LTf5vpwSSCeC4tb14uCcg&lowbar;qz&lowbar;NN0CvVJkgFCfFlx&lowbar;H9X1hhSgUl46a1a206hHgbqlMA&equals;w572" alt&equals;"clip&lowbar;image010"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>Installing AADirsync<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-HQwRg&lowbar;QL&lowbar;jw&sol;VVH&lowbar;YXsbcRI&sol;AAAAAAAAO7E&sol;vOvkoF7UwNM&sol;s1600-h&sol;clip&lowbar;image011&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh6&period;googleusercontent&period;com&sol;cltFJ7jCqy2Hc7mYklDtDunH1MGitbIKsduRijyfzFPIqIg&lowbar;expY66S-YUi9&lowbar;C6MxkfVz8Af7Kz3wVMPA8fl17Qxb6HyWzgwHvA3k0Nvmy9LmyMizijB&equals;w572" alt&equals;"clip&lowbar;image011"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-O8-0We6FXsI&sol;VVH&lowbar;Z6NjilI&sol;AAAAAAAAO7U&sol;XGtURJEzAkw&sol;s1600-h&sol;clip&lowbar;image012&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh4&period;googleusercontent&period;com&sol;CAqufAe3YdULSXynr8-5HYsGaE-qQrdgr-7ycOnXuIBjrr4eoR4D9NoGObzcoQ65XnoebA3GY3VW5B79PjbEdUWogA64APRFo4vwU0EWmofPjodpKg&equals;w673" alt&equals;"clip&lowbar;image012"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-tBT4tXiYk-g&sol;VVH&lowbar;bm6xEbI&sol;AAAAAAAAO7g&sol;Hd8nvPXmU1k&sol;s1600-h&sol;clip&lowbar;image013&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh4&period;googleusercontent&period;com&sol;effPFPo1E4U5-6droF05Pm2tC0QZD7xWLL4nMr89YeZacykuT-61eGSoic-n77ZQOrn-iIGtO9DPUCcJZ0ZzJWJCxMxT6j3waOqloYR&lowbar;942bdvIsyAlz&equals;w673" alt&equals;"clip&lowbar;image013"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-plhusVivI7Y&sol;VVH&lowbar;dPwQB-I&sol;AAAAAAAAO70&sol;hhVapoZ0h&lowbar;8&sol;s1600-h&sol;clip&lowbar;image014&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;JcG0cNNbaAjF3eAmQLEelkYkh&lowbar;buLCP&lowbar;XlM7CXV4mqxYQqSHoLbZM9slV6X&lowbar;PXjA7nHKDV5H&equals;w673" alt&equals;"clip&lowbar;image014"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-53x7l1ScxHc&sol;VVH&lowbar;epnULdI&sol;AAAAAAAAO8E&sol;6RlmyaNHHvE&sol;s1600-h&sol;clip&lowbar;image015&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh6&period;googleusercontent&period;com&sol;WpU2ih6S2doG0P0H5uYLo7iLVOXfKGcehaamDJPA-BZI2G&lowbar;oEn2yyX2iKGFnFB2ogQOaPCuQ55yNL7tEqWs9y3CeixHKLC940yMuReJqCuKC9e-baWE&equals;w673" alt&equals;"clip&lowbar;image015"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>In the next step you will have to enter an Office 365 Global administrator user &lpar;preferably not onmicrosoft&period;com user&rpar; and I would recommend that you create a cloud user on Office 365 with global admin privileges to use with AADSYNC&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-kVsIe7Wt34U&sol;VVH&lowbar;f&lowbar;IAoeI&sol;AAAAAAAAO8U&sol;3Rrzq&lowbar;kGyVs&sol;s1600-h&sol;clip&lowbar;image016&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh5&period;googleusercontent&period;com&sol;41EBGR5IQU4hujolk0YMkxo0t&lowbar;R&lowbar;QAlyH9KN3ZFf1ZK40A8XGtHQQ1mWVsyyhlkIxBoZ&lowbar;1zhhFSJwh9GdTk51AM7AWhXcUP1umQRM4adPb-tnd77&equals;w673" alt&equals;"clip&lowbar;image016"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>Next before you continue&comma; you should open your O365 portal and Enable ADSync there&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-6cMdjgJA-1Q&sol;VVH&lowbar;h6qBRfI&sol;AAAAAAAAO8k&sol;9mcgaZSU8dk&sol;s1600-h&sol;image&percnt;25255B26&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh6&period;googleusercontent&period;com&sol;Y8&lowbar;AnECe1c7zDTP00fWVe2OMv8jcIRnACRBp8Ky6UeA&lowbar;sYnZbBgphjPyCVFPfE1YUbyz4v2bCI3ZTQOeGPgoYLMZQozSIDV12XpwDe33PAc6evRzjyI&equals;w673" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>When you click on Set up the following page should come to you&period; you should click on Activate AD Sync&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-S36uTHifk38&sol;VVH&lowbar;juLof2I&sol;AAAAAAAAO84&sol;GFInYuTEbIk&sol;s1600-h&sol;clip&lowbar;image018&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh5&period;googleusercontent&period;com&sol;sqtjuvoSsR7-&lowbar;&lowbar;IRJg6ULjtrb2Nmgj58wwnvhYzd7re&lowbar;k9UvSo86gAcgzvgQ6LrBWRt49E9z8U2JvMJESRMPjLnNiBHb3UqC22r2wGlHLgAL4uA-VEU&equals;w673" alt&equals;"clip&lowbar;image018"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-ixBxmMAL2Uk&sol;VVH&lowbar;lUr8xTI&sol;AAAAAAAAO9E&sol;qwmC7czdZLM&sol;s1600-h&sol;clip&lowbar;image019&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh6&period;googleusercontent&period;com&sol;VM7MqTTciEjvAXuygJ7WsRIvKVgUw3gLVbDZW0B4xk9UbhIPMYWzbI45e2DbAkk2bzSAZFr3&equals;w572" alt&equals;"clip&lowbar;image019"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>Now you may continue to config AADSYNC&comma; below I am going to use a different user that’s dedicated only to &OpenCurlyDoubleQuote;AADSYNC” tool&period; I will calll it <a href&equals;"mailto&colon;Dirsynccloud&commat;domain&period;com" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">Dirsynccloud&commat;domain&period;com<&sol;a><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-cLXBgbdyoK4&sol;VVH&lowbar;mpKGj6I&sol;AAAAAAAAO9Y&sol;VK72vIkiLVM&sol;s1600-h&sol;image&percnt;25255B29&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;gRFIl6a-RgHMKHn2WgIV1PNqPZcSC7NK5nIlVQgRyCHv9nrhNTf2brsyv--SOxV9INVusfaPkY1C6MGgPdwf0Efmt0oC4THeBUTMSc5q6DZTxiWbsw&equals;w673" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>Next On Active directory on-premises I will configure a new user called &lpar;Dirsync&rpar; that’s member of enterprise admins&period; this user will have access to all the OUs that will be synced in order to sync their attributes and passwords&period;&period;etc<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-I7wczJsJ44c&sol;VVH&lowbar;oTqf1gI&sol;AAAAAAAAO9o&sol;ZFs9rR2qF2U&sol;s1600-h&sol;image&percnt;25255B32&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh5&period;googleusercontent&period;com&sol;bGVhkSODsHhQBVC8&lowbar;zKNH0zXWoiwqZ9wD2UENB9UUzLgPQlwdLDX2DmH3WNGJ1BF1tYpOzkSPaIJCGJO2OoApYnRn5FSliqelEuz5SCfYcBv7VNA4g&equals;w673" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>Once you enter your Enterprise domain account below and click add forest&comma; it will be enlisted below and you can add additional number of forests if you have more&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-FU1C6M8F&lowbar;&lowbar;I&sol;VVH&lowbar;qJiasfI&sol;AAAAAAAAO90&sol;DKkheauEaj0&sol;s1600-h&sol;image&percnt;25255B35&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;upiAt8DNaHdXDiFX3aehFfVW0j9M4G&lowbar;KchV1nODOGNgdOwB4XcnrF&lowbar;20eePYkqUp5qB4v04dAx4JP7rzFMv2wdtLQjl&lowbar;qBKQsXVIuxRbRDbdy8VB-bM&equals;w572" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-WTNPMR6EjrY&sol;VVH&lowbar;rykH2XI&sol;AAAAAAAAO-I&sol;y0yjI57-DUk&sol;s1600-h&sol;clip&lowbar;image025&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh4&period;googleusercontent&period;com&sol;qxEfkKF6b30J7ukjzTQbNKJVMGtBOr2WqJJ&lowbar;Z10HakVdIRu7jEKlVUL8czYbClqBuyIXyaZXhjSqCBts-ps&lowbar;hvQ2DD-nL8M0UdPOe3U20ZWCOgp8IPSr&equals;w673" alt&equals;"clip&lowbar;image025"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>Next you may choose to have Hybrid deployment if you have Exchange on-premises &lpar;At least Exchange 2010 SP3&rpar; but if not then no need to tick the box&period; The password write-back is a feature that requires an Azure premium AD subscription so if you don’t have this subscription then you don’t really need to tick this box&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>The Azure AD app and attribute filtering is a feature that allows you to pick a certain application attribute you want to sync back and forth to Azure AD e&period;g&period; &lpar;Exchange&comma; SharePoint&period;&period;etc&rpar;&period; If you don’t tick this box the normal standard attributes will be synced which will include &lpar;Exchange and user’s basic info&rpar; you can find it as soon as the setup finished and you open ADDSync UI&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-p6maszmQI8M&sol;VVH&lowbar;tf5&lowbar;FyI&sol;AAAAAAAAO-Y&sol;prjFUH-1ny0&sol;s1600-h&sol;clip&lowbar;image026&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh5&period;googleusercontent&period;com&sol;GUUolT&lowbar;Nxu8lGQUoIkTe9ObR2h4sQVEGfBIiPsTzg3FfNDY5AI&lowbar;Vu1eHnzXJ&lowbar;FjmbNfMZKKK6PEj3OsCSMcLm81fCluOQ0UQb01RIiFj3TibthQC&lowbar;w&equals;w673" alt&equals;"clip&lowbar;image026"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p><a href&equals;"http&colon;&sol;&sol;www&period;google&period;com&sol;url&quest;q&equals;http&percnt;3A&percnt;2F&percnt;2Fwww&period;moh10ly&period;website&percnt;2F2015&percnt;2F05&percnt;2Finstalling-and-configuring-azure-active&period;html&amp&semi;sa&equals;D&amp&semi;sntz&equals;1&amp&semi;usg&equals;AFQjCNErlLlF8a7hNLruc-uTCI0dUQ0tjw" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">Password writeback overview<&sol;a><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>Password writeback is an Azure Active Directory Sync component that can be enabled and used by the current subscribers of Azure Active Directory Premium&period; For more information&comma; see <a href&equals;"https&colon;&sol;&sol;www&period;google&period;com&sol;url&quest;q&equals;https&percnt;3A&percnt;2F&percnt;2Fmsdn&period;microsoft&period;com&percnt;2Fen-us&percnt;2Flibrary&percnt;2Fazure&percnt;2Fdn532272&period;aspx&amp&semi;sa&equals;D&amp&semi;sntz&equals;1&amp&semi;usg&equals;AFQjCNHJVkh6IJvq28BPfUsdsXR5HGKM-A" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">Azure Active Directory Editions<&sol;a>&period; It allows you to configure your cloud tenant to write passwords back to you on-premises Active Directory&period; It obviates you from having to set up and manage a complicated on-premises self-service password reset solution&comma; and it provides a convenient cloud-based way for your users to reset their on-premises passwords wherever they are&period; Read on for some of the key features of password writeback&colon;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>From &lt&semi;<a href&equals;"https&colon;&sol;&sol;www&period;google&period;com&sol;url&quest;q&equals;https&percnt;3A&percnt;2F&percnt;2Fmsdn&period;microsoft&period;com&percnt;2Fen-us&percnt;2Flibrary&percnt;2Fazure&percnt;2Fdn903642&period;aspx&amp&semi;sa&equals;D&amp&semi;sntz&equals;1&amp&semi;usg&equals;AFQjCNFjESlmypoS4Y03p-AXqU966dJj4w" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">https&colon;&sol;&sol;msdn&period;microsoft&period;com&sol;en-us&sol;library&sol;azure&sol;dn903642&period;aspx<&sol;a>&gt&semi;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>You can enable filtering in AADSync at any time&period; If you have already run the default configurations of directory synchronization and then configured the filtering&comma; the objects that are filtered out are no longer synchronized to Azure AD&period; As a result&comma; any objects in Azure AD that were previously synchronized but were then filtered are deleted in Azure AD&period; If objects were inadvertently deleted because of a filtering error&comma; you can re-create the objects in Azure AD by removing your filtering configurations&comma; and then synchronize your directories again&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>From &lt&semi;<a href&equals;"https&colon;&sol;&sol;www&period;google&period;com&sol;url&quest;q&equals;https&percnt;3A&percnt;2F&percnt;2Fmsdn&period;microsoft&period;com&percnt;2Fen-us&percnt;2Flibrary&percnt;2Fazure&percnt;2Fdn801051&period;aspx&amp&semi;sa&equals;D&amp&semi;sntz&equals;1&amp&semi;usg&equals;AFQjCNG3TsbAX4LL0X&lowbar;W1y3I2n8RA9OJ3Q" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">https&colon;&sol;&sol;msdn&period;microsoft&period;com&sol;en-us&sol;library&sol;azure&sol;dn801051&period;aspx<&sol;a>&gt&semi;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-wM2wKvZZZS4&sol;VVH&lowbar;u2vvyBI&sol;AAAAAAAAO-k&sol;gxgbivTXH5w&sol;s1600-h&sol;image&percnt;25255B38&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh4&period;googleusercontent&period;com&sol;67rVhP7mgJz45PQ7csu60xlwlLT0Zkds5wHOUgyd92zeCmsy7ex6qvOCLRxCOWMvDFXySlNg&equals;w673" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>Next I will not tick Synchronize now because this will sync All local AD objects and OUs to the cloud&comma; in my case I just want to choose particular OUs to sync to the cloud&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-oeGDANTuPUo&sol;VVH&lowbar;wMvraGI&sol;AAAAAAAAO-4&sol;DOZ9u51KuCA&sol;s1600-h&sol;clip&lowbar;image029&percnt;25255B3&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh6&period;googleusercontent&period;com&sol;VkPJRXHHFlqB-g7KhBTMZ3M9swxTbbBaipCAhIbQTLFMs0bkWcKdaN6EtJEltJEw4NcH27l2an01NaM6&lowbar;k9YynArRTADmyP3XGdGs5pV1jxWQlSvIS8&equals;w673" alt&equals;"clip&lowbar;image029"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>In order to configure AADSYNC to choose which on-premises Active directory Organization Unit you want to change you will have to navigate to the following path on the server which you installed AADSYNC&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>PATH&colon;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p><strong>C&colon;&bsol;Program Files&bsol;Microsoft Azure AD Sync&bsol;UIShell&bsol;miisclient&period;exe<&sol;strong><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p><strong>Right click on domain&period;local and click properties<&sol;strong><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-Iai59dtYA3E&sol;VVH&lowbar;xnKwhbI&sol;AAAAAAAAO&lowbar;E&sol;UUFCYSRiOXU&sol;s1600-h&sol;image&percnt;25255B41&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh6&period;googleusercontent&period;com&sol;QqnwtHEDFHxd7qhxou0cvC-RjSrEvRJM9mrg3ojtbtJ40INmryHZRAjX6QxZfHfUhJCcHT8fggcXAW77425tG52vxBM&lowbar;i6Fe8SSUlinmhiRdmqyDeE0&equals;w673" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>Next Click on &OpenCurlyDoubleQuote;Configure Directory Partitions” and Under &OpenCurlyDoubleQuote;Credentials” Click on Containers and enter your new on-premises enterprise admin account&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-tFD4Lycqo7U&sol;VVH&lowbar;zfN0jnI&sol;AAAAAAAAO&lowbar;Y&sol;byv47w8ZJFQ&sol;s1600-h&sol;image&percnt;25255B44&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;Hw0fVAPjqQDoK4VsKFddIrgrS2B4WrBR7Da-wR8Uq4k&lowbar;lP9E2--behntqzMAz3z2Ohl6cKbXAsqghnpwXfp8sjYpXgrmkNsR5gXJ&lowbar;e1lM8&lowbar;nkeB&lowbar;Ug&equals;w673" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>Next select the OU you want to sync to the cloud and click OK<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-gWfqPyY0sOM&sol;VVH&lowbar;07JfwWI&sol;AAAAAAAAO&lowbar;k&sol;-OJjehnAHho&sol;s1600-h&sol;image&percnt;25255B47&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh6&period;googleusercontent&period;com&sol;TcYqvJWVi-ghNaYwRE6c&lowbar;B0GD8ifEtiv2Yd&lowbar;jpxGbv-CeLu4PDvMjrExc996D20W2LHZAbQT0wV36bXLkUEYf8eTviCqu8F48gaWSn7h82N0dzOH8UM&equals;w472" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>Next you will want to open &OpenCurlyDoubleQuote;Task Scheduler” on the server and Enable the task that was created by AADSYNC installation to enable every 3 hours sync&period;&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<figure class&equals;"wp-block-image"><a href&equals;"http&colon;&sol;&sol;lh3&period;googleusercontent&period;com&sol;-5FvQ4ezVu3w&sol;VVH&lowbar;2ZdWYVI&sol;AAAAAAAAO&lowbar;0&sol;W&lowbar;vSgLkmdu8&sol;s1600-h&sol;image&percnt;25255B51&percnt;25255D&period;png" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener"><img src&equals;"https&colon;&sol;&sol;lh4&period;googleusercontent&period;com&sol;D6SoTnpHqyKXRS3HhZE6uhob&lowbar;m9-ivvsiRtT9&lowbar;9Ndqm1xDm5m3f37S&lowbar;VBm2SYcjLvqRq0AZ&lowbar;8vKwcjU9L3YgTMZLYAzmgAHySH3N7-XSAOQYyfe55g&equals;w773" alt&equals;"image"&sol;><&sol;a><&sol;figure>&NewLine;&NewLine;&NewLine;&NewLine;<p>In order to Force the sync you will have to run a separate command that Microsoft has brought along with AADSYNC called &OpenCurlyDoubleQuote;DirectorySyncClientCmd” the command can be run from Powershell or made a shortcut on a desktop and directly run&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>Path&colon;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>c&colon;&bsol;Program Files&bsol;Microsoft Azure AD Sync&bsol;Bin&bsol;DirectorySyncClientCmd<&sol;p>&NewLine;<&excl;-- WP QUADS Content Ad Plugin v&period; 2&period;0&period;92 -->&NewLine;<div class&equals;"quads-location quads-ad2523 " id&equals;"quads-ad2523" style&equals;"float&colon;none&semi;margin&colon;0px 3px 3px 3px&semi;padding&colon;0px 0px 0px 0px&semi;" data-lazydelay&equals;"0">&NewLine;&NewLine;<&sol;div>&NewLine;&NewLine;&NewLine;&NewLine;&NewLine;<p>Hope you find this useful&period; <&sol;p>&NewLine;&NewLine;<&excl;-- WP QUADS Content Ad Plugin v&period; 2&period;0&period;92 -->&NewLine;<div class&equals;"quads-location quads-ad2530 " id&equals;"quads-ad2530" style&equals;"float&colon;none&semi;margin&colon;0px 3px 3px 3px&semi;padding&colon;0px 0px 0px 0px&semi;" data-lazydelay&equals;"0">&NewLine;&NewLine;<&sol;div>&NewLine;&NewLine;

moh10ly

Recent Posts

Reset passwords for Active Directory Users

Reset and manage your Active Directory users' Passwords Active Directory is one of the most…

3 years ago

Finding Exchange Database hidden mailboxes. ​

Finding Exchange Database hidden mailboxes. Story:Maybe you have been in this situation before, trying to…

3 years ago

Setting up ADConnect and PTA (Password auth through) servers agents behind proxy

If you're using a Proxy server in your firewall or in your network and have…

3 years ago

Get Report of Active Directory Locked Accounts and Machine they logged in from

Story:I got some clients  that have reported some of their users being locked out and…

3 years ago

Checking and Providing Full and SendAs delegate access on O365 Exchange Online

Delegate Permissions This is a code that I have wrote recently to check if an…

3 years ago

Retrieving attachments from Exchange mailbox using python

Story: I got a request from a client who constantly gets CVs and have to…

4 years ago

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298