Updated: July 15, 2020 (November 7, 2016)

  Charts & Illustrations

AD DS and AAD Integration

My Atlas / Charts & Illustrations

246 wordsTime to read: 2 min
Wes Miller by
Wes Miller

Wes Miller analyzes and writes about Microsoft’s security, identity management, and systems management technologies. Before joining Directions on Microsoft, Wes... more

There are a variety of ways to integrate on-premises Active Directory Domain Services (AD DS) deployments with Azure Active Directory (AAD). This chart shows three integration levels: None, Synchronized, and Synchronized and Federated. Higher levels of integration reduce account management effort and simplify sign-on by users but have higher technical requirements.

The free Azure Active Directory Connect (AAD Connect) tool performs synchronization between AD DS and AAD. AAD Connect incorporates AAD Sync, the previous tool for performing directory synchronization. (Microsoft will stop supporting AAD Sync and DirSync, the tool that preceded it, in Apr. 2017.) Organizations can also use Microsoft Identity Manager 2016 (MIM) to perform AAD synchronization. (MIM uses AAD Connect internally to perform synchronization.)

Windows Server AD Federation Services or compatible technology is required for federated authentication.

Features Degree of Integration
  None Synchronized

Atlas Members have full access

Get access to this and thousands of other unbiased analyses, roadmaps, decision kits, infographics, reference guides, and more, all included with membership. Comprehensive access to the most in-depth and unbiased expertise for Microsoft enterprise decision-making is waiting.

Membership Options

Already have an account? Login Now