Can I Sync Microsoft Entra ID Users with Local Active Directory?

0
10
Asked By TechieNerd123 On

Hey everyone! I'm trying to find out if it's possible to sync users from Microsoft Entra ID to my on-premises Active Directory for local authentication, like using LDAP or RDS. Just to clarify, I'm not looking to sync local AD users to Entra ID, only the other way around.

5 Answers

Answered By CloudWizard79 On

User writeback was deprecated a while ago, so directly syncing users isn't straightforward. One option is to export the users from Entra ID to a CSV file and then script their addition to Active Directory. It's not perfect but can get the job done.

Answered By SunnySideSysadmin On

Unfortunately, Microsoft doesn't directly support syncing users back to on-prem AD from Entra. A good alternative is to set up AD Connect for local to cloud synchronization and adjust the Source of Authority for each user. This way, any changes made in the cloud will sync back down to your local AD.

Answered By SyncMasterGabe On

It really depends on your specific needs. If you have an on-premises system that relies on AD for authentication, there are ways to write back to AD, but they'd likely be more manual and clunky. The right approach will vary based on whether you need passwords synced too.

Answered By BackupBuddy91 On

Syncing users from Entra ID to on-prem AD isn't natively supported since LDAP writeback isn't available. If you're dealing with a hybrid setup, consider identity governance solutions or security overlays, like Orca Security or Ping. They manage sync and audit processes better and help with authentication concerns. Always remember to back up your AD before attempting any major sync changes!

Answered By CloudExplorerX On

You might want to look into Entra DS, which is a managed Active Directory from Microsoft that works with Entra. However, it's somewhat limited and might require individual user password setups rather than providing full SSO functionality.

Related Questions

LEAVE A REPLY

Please enter your comment!
Please enter your name here

This site uses Akismet to reduce spam. Learn how your comment data is processed.