I need to ask if contoso.com domain can be used as onPrem domain in Lab enviroment (for Deploying Windows 11/10) when trying to Configure Azure AD Connect, actually when trying to sync onPrem AD <-> Azure / online cloud directory?

TeenZ 0 Reputation points
2024-08-30T08:35:25.5166667+00:00

Hi, sorry for interrupt... I need to ask if contoso.com (or corp.contoso.com) can be used as onPrem domain when trying to establish Windows and Office 365 deployment lab kit? I will try to specify this question in details... I belive that Azure AD needs to have verified domain, but I can't verify contoso.com domain. Correct me if my beliefs are wrong and onPrem domain doesn't have to be verified.

So, what should I do? I am using the lab kit only for testing, learing etc. but don't want to buy or register domain. Can you somehow help, can I send mx record to somebody in contoso.com?

For any help would be I would be grateful.

Best regards,

TeenZ

Azure Cloud Services
Azure Cloud Services
An Azure platform as a service offer that is used to deploy web and cloud applications.
702 questions
Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,645 questions
Microsoft Deployment Toolkit
Microsoft Deployment Toolkit
A collection of Microsoft tools and documentation for automating desktop and server deployment. Previously known as Microsoft Solution Accelerator for Business Desktop Deployment (BDD).
904 questions
Microsoft Configuration Manager Deployment
Microsoft Configuration Manager Deployment
Microsoft Configuration Manager: An integrated solution for for managing large groups of personal computers and servers.Deployment: The process of delivering, assembling, and maintaining a particular version of a software system at a site.
992 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
22,116 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Fabio Andrade 1,660 Reputation points Microsoft Employee
    2024-08-30T16:29:01.1266667+00:00

    Hi @TeenZ

    Thanks for reaching out to Microsoft Q&A.

    It's ok to build a sync lab without having to purchase and verify a domain. However, you won't be able to use the same UPN from your onpremises environment (contoso.com) on Entra ID, so after the sync, your users will be created as user1@contosoxyz.microsoft.com on Entra ID, which doesn't prevent you from running any tests related to a hybrid environment.

    To sync your onprem users to Entra, you have 2 options:

    1 - Entra Connect Sync: When using this option, all the logic and processing of the sync engine happens locally on the server you install the agent. It brings you more customizable options and less limitations, but demands more administrative efforts to manage it

    https://learn.microsoft.com/en-us/entra/identity/hybrid/connect/whatis-azure-ad-connect-v2

    2 - Entra Cloud Sync: This is a lightweight client that you install on the server, but as opposed to the latter option, everything runs on the cloud requiring minimal resources from the server. Cloud sync has some limitations as described on the comparison link below, but that's the best option for the majority of use cases.

    https://learn.microsoft.com/en-us/entra/identity/hybrid/cloud-sync/what-is-cloud-sync

    Thanks,

    Fabio


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.