Mastering Identity and Access Management with Microsoft Azure
上QQ阅读APP看书,第一时间看更新

Single-forest integration

The single-forest scenario is a commonly used one. A single forest can contain one or multiple domains and a single instance of Azure AD. The express settings of Azure AD Connect support this scenario. We recommend filtering the objects so that service accounts, computers, or other objects won't be synchronized to the cloud:

Azure AD Connect single-forest integration scenario

Additional Azure AD Connect servers connected to the same Azure AD aren't supported. Excluded is the high availability option with the Azure AD Connect staging mode, which is explained in the section, Azure Active Directory Connect high availability.