Skip to content

TechDirectArchive

Hands-on IT, Cloud, Security & DevOps Insights

  • Home
  • About
  • Advertise With US
  • Contact
  • Reviews
  • Toggle search form
Home » AWS/Azure/OpenShift » Integrating on-premise AD with Azure Active Directory and MFA
  • article 1280x720.166f8634
    Configure Windows client to obtain IP Address via a DHCP Server Windows Server
  • VBR console update
    Veeam Backup Console must be updated to the latest version Backup
  • mountedimagenotaccessible
    Unable to access the image: Make sure that the image path and the Windows directory for the image exist and you have Read permissions on the folder Windows
  • Windows BootProcess
    Measured Boot, Secure Boot, Trusted Boot, and Early Launch Anti-Malware: How to secure the Windows 10 boot process Security | Vulnerability Scans and Assessment
  • Enable Nexted Virtualization on VirtualBox
    ESXi VMB 411 Halting: Virtualbox Nested VT-X/AMD-V greyed out Virtualization
  • linux windows 10
    Windows Subsystem for Linux: How to install WSL on Windows 10 Linux
  • BitLocker removal on Windows Server
    How to correctly disable BitLocker on Windows Server Windows Server
  • image 3
    How to Migrate Your WordPress Site with WordPress Duplicator Network | Monitoring

Integrating on-premise AD with Azure Active Directory and MFA

Posted on 25/01/202007/10/2024 Christian By Christian No Comments on Integrating on-premise AD with Azure Active Directory and MFA
integrating

This articles describes “What you need to know before integrating on-premise AD with Azure Active Directory and MFA”. Azure Active Directory (AAD) is a Cloud Identity and Access Management solution that provides directory services, application access management, and advanced identity protection. Its single sign-on (SSO) and Multi-Factor Authentication (MFA) capability help protect employees from cyberattacks. Please see the following guide Azure Active Directory integration with on-Premise AD using PTA, and Microsoft Azure Multi-Factor Authentication (MFA).

There is a slight difference as Windows Active Directory is focused on securing Windows desktops and servers on-premise. While AAD is all about web-based authentication standards such as OpenID and OAuth.

For more information and also this guide for reasons to deploy AAD, how to set up Azure AD Tenant, and how to add or delete users, and set permissions in Azure Active Directory. Also, see why do I need to deploy Azure Active Directory and how to use the built-in AAD Connect troubleshooting tool.

Integrating On-Premise AD with Azure AD and MFA Tips

Prices (License) – Editions of AAD: See the following link for pricing. As of this time, this comes in four editions, which are as follows;

  • Free Edition
  • Office 365 apps edition
  • Premium 1
  • Premium 2

Free Edition

This edition has a 12-month free subscription (Azure AD) is not included. But it has an option to test Azure AD for one month which is regarded as AAD Premium Free. See the following link for more information. see the following article on how to add a custom domain in the Azure Active directory.

Office Apps Edition

This licensing edition does not include lots of basic identity and access management functionalities such as MFA with Conditional Access. Also does not provide Identity Protection / Governance functionalities such as Risk-based conditional access policies and permission management. Also does not include Hybrid Identities, Advanced Management of Group Access, etc.

Premium Editions:

These license options are available through the Open Program / Volume License Program (Integrating On-Premise AD with Azure AD and MFA Tips). This is a simple and cost-effective way to acquire the latest Microsoft technology, sub-divided into Premium 1 and Premium 2.

Premium 1:

This option also does not include some advanced functionalities of Identity Protection and Governance in determining risks and vulnerable accounts and Privileged Identity Management (PIM) etc.

Premium 2

This license model is recommended as it has all the advanced functionalities such as Identity and Access Management on-premise, cloud, and hybrid environments. It also offers adds reports as shown below.

  • Sign in from IP addresses and suspicious activities
  • Irregular sign-in devices used and show users that most actively use an application.
  • Alerts in the form of emails to Azure AD administrators when anomalous behaviors are detected.

It might interest you to know that, Microsoft offers open programs to Government Organization and Educational Institution which allows the initial purchase of 5 or more licenses and this depends on your eligibility. Here are the different license programs available for the open program.

  • Open Value: This program is basically for small and medium-scale companies with relatively few desktops. It also has software assurance, technology training courses, and product support, etc. The license is valid over the total years of agreement. Meaning the total cost of the license can be spread through the entire subscription period.
  • Open Value Subscription: It provides the lowest budget upfront of the open program options. With the flexibility to reduce the total licensing cost in the future if the need decreases. Here the software is not purchased but subscribed to and the monthly costs are lower.
  • Open License: One-time payment but grants unlimited use of software (i.e., upfront payment in a large sum). In this program, the five license minimum initial purchase is waived. This is not ideal as it is difficult to tell, how many licenses and updates would be needed in the coming years. This has technical support included.

I hope you found this blog post on what you need to know before integrating on-premise AD with Azure Active Directory and MFA helpful. Please let me know in the comment session if you have any questions.

5/5 - (1 vote)

Thank you for reading this post. Kindly share it with others.

  • Click to share on X (Opens in new window) X
  • Click to share on Reddit (Opens in new window) Reddit
  • Click to share on LinkedIn (Opens in new window) LinkedIn
  • Click to share on Facebook (Opens in new window) Facebook
  • Click to share on Pinterest (Opens in new window) Pinterest
  • Click to share on Tumblr (Opens in new window) Tumblr
  • Click to share on Telegram (Opens in new window) Telegram
  • Click to share on WhatsApp (Opens in new window) WhatsApp
  • Click to share on Pocket (Opens in new window) Pocket
  • Click to share on Mastodon (Opens in new window) Mastodon
  • Click to share on Bluesky (Opens in new window) Bluesky
  • Click to share on Threads (Opens in new window) Threads
  • Click to share on Nextdoor (Opens in new window) Nextdoor
AWS/Azure/OpenShift Tags:Azure, Azure Active Directory, Azure AD, Azure AD Tenant, Azure Domain Services, microsoft, Microsoft Azure, Microsoft Azure Active Directory

Post navigation

Previous Post: How to create a contact in Active Directory
Next Post: Azure Active Directory: Why do I need to deploy Azure AD?

Related Posts

  • Azure VMware Solution Private Cloud
    How To Deploy Azure VMware Solution Private Cloud AWS/Azure/OpenShift
  • EC2 Public IP
    How to Allocate, Associate, Disassociate and Release Elastic IP Address from an EC2 Instance AWS/Azure/OpenShift
  • youtube cover blue
    How to use the Azure Cloud Shell or Azure CLI and Azure PowerShell AWS/Azure/OpenShift
  • VBAWS comprehensive guide
    Deep Dive into Protecting AWS EC2, RDS Instances and VPC AWS/Azure/OpenShift
  • AWS import issues   OVA
    Error importing OVA file to AWS: Client error saved empty is empty AWS/Azure/OpenShift
  • Install Packages to Amazon Virtual Machine Using Terraform
    How to Install Packages to Amazon VM using Terraform AWS/Azure/OpenShift

More Related Articles

Azure VMware Solution Private Cloud How To Deploy Azure VMware Solution Private Cloud AWS/Azure/OpenShift
EC2 Public IP How to Allocate, Associate, Disassociate and Release Elastic IP Address from an EC2 Instance AWS/Azure/OpenShift
youtube cover blue How to use the Azure Cloud Shell or Azure CLI and Azure PowerShell AWS/Azure/OpenShift
VBAWS comprehensive guide Deep Dive into Protecting AWS EC2, RDS Instances and VPC AWS/Azure/OpenShift
AWS import issues   OVA Error importing OVA file to AWS: Client error saved empty is empty AWS/Azure/OpenShift
Install Packages to Amazon Virtual Machine Using Terraform How to Install Packages to Amazon VM using Terraform AWS/Azure/OpenShift

Leave a Reply Cancel reply

You must be logged in to post a comment.

Microsoft MVP

VEEAMLEGEND

vexpert-badge-stars-5

Virtual Background

GoogleNews

Categories

veeaam100

sysadmin top30a

  • article 1280x720.166f8634
    Configure Windows client to obtain IP Address via a DHCP Server Windows Server
  • VBR console update
    Veeam Backup Console must be updated to the latest version Backup
  • mountedimagenotaccessible
    Unable to access the image: Make sure that the image path and the Windows directory for the image exist and you have Read permissions on the folder Windows
  • Windows BootProcess
    Measured Boot, Secure Boot, Trusted Boot, and Early Launch Anti-Malware: How to secure the Windows 10 boot process Security | Vulnerability Scans and Assessment
  • Enable Nexted Virtualization on VirtualBox
    ESXi VMB 411 Halting: Virtualbox Nested VT-X/AMD-V greyed out Virtualization
  • linux windows 10
    Windows Subsystem for Linux: How to install WSL on Windows 10 Linux
  • BitLocker removal on Windows Server
    How to correctly disable BitLocker on Windows Server Windows Server
  • image 3
    How to Migrate Your WordPress Site with WordPress Duplicator Network | Monitoring

Subscribe to Blog via Email

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

Join 1,839 other subscribers
  • RSS - Posts
  • RSS - Comments
  • About
  • Authors
  • Write for us
  • Advertise with us
  • General Terms and Conditions
  • Privacy policy
  • Feedly
  • Telegram
  • Youtube
  • Facebook
  • Instagram
  • LinkedIn
  • Tumblr
  • Pinterest
  • Twitter
  • mastodon

Tags

AWS Azure Bitlocker Microsoft Windows PowerShell WDS Windows 10 Windows 11 Windows Deployment Services Windows Server 2016

Copyright © 2025 TechDirectArchive

 

Loading Comments...
 

You must be logged in to post a comment.