Azure AD Connect – Configure synchronization
To configure synchronization between on-premises Active Directory (AD) and Azure Active Directory (Azure AD) using Azure AD Connect, follow these steps:
Procedure
- Download and install Azure AD Connect on a server that has network connectivity to both your on-premises AD domain and your Azure AD tenant.
- Launch the Azure AD Connect configuration wizard and sign in with a Global Administrator account for your Azure AD tenant.
- In the "Connect your directories" screen, select "Express Settings" and then click on the "Next" button.
- In the "Azure AD sign-in configuration" screen, enter the credentials for an account that has permissions to read the directory data in your on-premises AD domain, and then click on the "Next" button.
- In the "Connect to your directory" screen, select your on-premises AD forest and then click on the "Add Directory" button.
- Enter the credentials for an account that has permissions to read the directory data in your on-premises AD domain, and then click on the "OK" button.
- In the "User sign-in" screen, select "Password Hash Synchronization" as the sign-in method and then click on the "Next" button.
- In the "Ready to configure" screen, review the configuration settings and then click on the "Install" button to start the synchronization process.
- Wait for the synchronization process to complete, which may take several minutes depending on the size of your on-premises AD domain and the number of objects that need to be synchronized.