Using a shared Active Directory environment

In recent months, we've had several discussions about using a single forest environment with two Azure Active Directory tenants, including Office 365 services and an AD FS and Web Application Proxy combination. We often get these questions if the organization wants to use a separate Office 365 tenant, operated by 21Vianet or service providers that want to use a shared Active Directory infrastructure for small customers.

The following solution design is based on the following supported AAD Connect topology:

Using a shared Active Directory environment

You can only use this option with AD FS or an equivalent ...

Get Mastering Identity and Access Management with Microsoft Azure - Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.