Don't Use Entra Domain Services to Replace Windows Active Directory

Ғылым және технология

Correction: Entra DS now supports a two-way trust.
Entra Domain Services (Entra DS) is a Windows AD-compatible service managed by Microsoft. Some may see it as a better alternative to self-hosting Windows AD. However, there are limitations to Entra DS that should be considered before using it to replace domain controllers. This video and accompanying blog post go over those limitations and outline how they could impact an organization.
Links
Free Azure guide! Subscribe to the newsletter
subscribepage.io/rbsIjt
Zero to Hero with Azure Virtual Desktop
www.udemy.com/course/zero-to-...
Hybrid Identity with Windows AD and Azure AD
www.udemy.com/course/hybrid-i...
Windows 365 Enterprise and Intune Management
www.udemy.com/course/windows-...
Entra ID, Windows AD and Entra DS video
• What is Entra ID, Entr...

Пікірлер: 15

  • @SmallvilleJW
    @SmallvilleJW22 күн бұрын

    Awesome overview, Travis! Thank you so much for providing excellent Azure content. 😎

  • @mysticsilent
    @mysticsilentАй бұрын

    Thanks for this nice guide!

  • @Wilhelmcook
    @WilhelmcookАй бұрын

    Thanks for this explanation. Very Helpful.

  • @curranp3892
    @curranp389220 күн бұрын

    This guy i swear i recognize his voice he has courses on cloud academy he is a celebrity

  • @patrick__007
    @patrick__007Ай бұрын

    Great and clear to me!

  • @77zishan
    @77zishan24 күн бұрын

    Thanks again for this video! Love it

  • @curranp3892
    @curranp389220 күн бұрын

    Hi Travis love your stuff didnt realize famous you are !

  • @alexmags
    @alexmagsАй бұрын

    Limitation: Lack of cloud Kerberos trust, in Entra Domain Services, blocks sign in to domain joined' resources in Entra DS from Entra Joined desktops. Would you loose directory event logs in Defender for Identity (which is amazing) if you can't install it's agent/Defender for Endpoint?

  • @shahabpouladiankari4958
    @shahabpouladiankari4958Ай бұрын

    What if we had done it and got stuck in all those limitations? I have three tenants like this. And i am looking for a solution to move to windows AD or a hybrid with least down time.

  • @JonathanIsrael708
    @JonathanIsrael708Ай бұрын

    I'm confused by your Intune Enrollment limitation point. Wouldn't devices be Entra joined, so the auto enrollment would still work?

  • @Ciraltos

    @Ciraltos

    Ай бұрын

    Devices joined to Entra DS are not Entra joined. Auto-enrollment with Windows AD joined devices requires Entra Connect Sync for Hybrid join. Entra Connect Sync is not supported with Entra DS. learn.microsoft.com/en-us/windows/client-management/enroll-a-windows-10-device-automatically-using-group-policy

  • @kristopherleslie8343
    @kristopherleslie834325 күн бұрын

    Seems like a convoluted offering

  • @igoo5851
    @igoo5851Ай бұрын

    We are at the moment on a journey to replace Active Directory, but it will take years and lots of effort

  • @Ciraltos

    @Ciraltos

    Ай бұрын

    Windows AD has been in most businesses for over 20 years; it will take some time to remove all dependencies. It's good to recognize that at the beginning. Good luck!

Келесі