Exchange Hybrid & DirSync Ed Thursday12:45 – 2:30 mirazon.com.

Post on 08-Jan-2018

214 views 0 download

description

Identity Management Subtitle for slide Separate Sign on Single Sign on Same Sign on

Transcript of Exchange Hybrid & DirSync Ed Thursday12:45 – 2:30 mirazon.com.

Exchange Hybrid &DirSyncEd Buford @ebuford

Thursday 12:45 – 2:30

mirazon.com

What will we be talking about today?DirSync, Exchange, Office 365

•Understanding the HCW•Understanding the role of 3rd party certs•Understanding DirSync•User Attributes without Exchange

Identity ManagementSubtitle for slide

• Separate Sign on• Single Sign on• Same Sign on

mirazon.com

mirazon.com

Small Business ServerYou’re going to hate Thursdays!

• Nope!

Setting up DirSyncUnder Active users- Enable DirSync

mirazon.com

mirazon.com

Matching Cloud UsersMore simple that you might think

• ImmutableID only belongs Active Directory Sync’d users• ImmutableID is hashed during Synchronization• UPN comes from the SMTP: address not by the smtp:

address.• You can soft match users in Office 365 but you can also

hard match them.

User Attributes without ExchangeWhy do I have a .OnMicorosft.com reply address?

• Manually editing Attributes• Where do I find the ProxyAddresses Attribute?• What if I get it wrong?

mirazon.com

mirazon.com

mirazon.com

mirazon.com

mirazon.com

mirazon.com

mirazon.com

mirazon.com

mirazon.com

mirazon.com

mirazon.com

mirazon.com

Hybrid Configuration WizardWhat it’s really doing

• Creation of Hybrid Configuration Object• Check Tenant Prerequisites• Check Prerequisites• Configure Recipient Settings• Creating Organization Relationship• Configure Free/Busy Settings• Configure Mail Flow• Configure MRS Proxy Settings• Configure IntraOrganization Connector• Configure OAuth

3rd party certsSpend the money and get it right the first time!

• Why do I need a 3rd party Cert?• How does this work?• What do I really need?

mirazon.com

mirazon.com

mirazon.com

mirazon.com

mirazon.com

Things to rememberReally!

• SMTP: is not the same as smtp:• The UserGuid will always be hashed the same way no matter

what• The immutableID is based on the UserGuid• Sometimes you need to go on an Attribute Hunt

Thank You / Questions?

Ed.Buford@Mirazon.com

mirazon.com