SlideShare a Scribd company logo
Julien “Superman” Stroheker and Nicolas “Batman” Georgeault
Negotium Technologies
@Ju_Stroh et @NGeorgeault
Julien Stroheker
Team Lead @ Negotium Technologies
 Speaker and blogger
 http://www.pimpthecloud.com
 https://channel9.msdn.com/Blogs/Pimp-The-Cloud-Show
2
Nicolas Georgeault
CIO & SharePoint Senior Architect @Negotium
20 years of experience in IT
8 with SharePoint
6 as a SharePoint MVP
Co-author of Microsoft SharePoint Server 2010 and
2013 French books
3
Email/Yammer: ngeorgeault@club-sharepoint.fr
Twitter: @ngeorgeault
Blog: http://blog.georgeault.co
 Introduction
 Demo
 Demo
 Demo
 Demo
 Takeaways
4
• SharePoint On-Premises requires a number of Service
Applications to support Hybrid
• Secure Store is required for inbound Hybrid
• User Profile Service required to rehydrate users for
Security Trimming
Four Steps to Configure Onedrive and Sites Hybrid
1. Infrastructure Pre-Requisites
2. Setup AD Connect (DirSync)
3. ADFS Server and Proxy
4. Hybrid Picker
Required Tools
• Active Directory Connect - Link
• Azure Active Directory Module for Windows PowerShell –
Link
• SharePoint Online Management Shell – Link
Sharepoint and office 365 hybrid configuration from A to Z   #spstoronto 2015
Infrastructure Pre-Requisites – Verify Internal
Domain
• Verify the internal AD domain name with Office 365 –
Needs to be a routable domain!
• Enables Microsoft to verify that you “own” the domain
• If you are using a non-routable domain (.local) for AD –
all is not lost!
• Verifying a domain increases the Office 365 object limit
from 50K to 300K!
Infrastructure Pre-Requisites – Verify Internal
Domain
• In my environment the AD domain is contoso.com which
isn’t routable!
• I purchased o365ug.ca and associated this with the AD
domain contoso.com by adding a UPN Suffix
• Updated user accounts to use the new domain
Infrastructure Pre-Requisites – Verify Internal
Domain
• Involves adding a temporary DNS record to the domain
• The existence of this record is verified by Microsoft to
validate domain ownership
• Instructions included for the most common DNS hosting
providers
Infrastructure Pre-Requisites – Verify Internal
Domain
Infrastructure Pre-Requisites – Active Directory
• AD domain must be at least Windows Server 2003 Forest
Functional Level
• Run IdFix to identify objects that could cause sync issues and
remediate
o Illegal characters
o Duplicate entries
o Length
o …
Infrastructure Pre-Requisites – Activate Directory
Sync
PowerShell
Admin Center
Sharepoint and office 365 hybrid configuration from A to Z   #spstoronto 2015
Setting up AD Connect
1. Install and configure the AD COnnect tool – Link
2. Assign user licenses in Office 365
Sharepoint and office 365 hybrid configuration from A to Z   #spstoronto 2015
Additional Considerations
• For greater control over the attributes that are
synchronised to Azure AD select Azure AD app
and attribute filtering
• Password write-back requires Azure AD Premium
Checking Directory Synchronisation
Directory Synchronisation – Notification e-mail
Assigning Licenses using the Office 365 Portal
Assigning Licenses using PowerShell
• Licenses all users with a Username (UPN) of *.o365ug.ca
• Also sets their location to CA
AD Connect Schedule
• By default AD Connect will sync AD users with Office 365
every 3 hours
• A sync can be manually performed using
DirectorySyncClientCmd.exe – automate using a Scheduled
Task
Account
• Account is created in AD during AD Connect configuration
• Used by AAD Connect to read attributes from AD
• This account is granted the following
permissions:
• Replicating Directory Changes
• Replicating Directory Changes All
Sharepoint and office 365 hybrid configuration from A to Z   #spstoronto 2015
Summary
• Added a custom domain to Office 365 (o365ug.ca)
• Tidied up AD and activated Directory Sync in Office 365
• Setup Azure AD Connect to sync users from On-Premises
AD to Office 365 (Azure AD)
• Launch Hybrid Picker from SharePoint 2013 Server with
Office 365 Admin account
33
34
Brendan Griffin for his session:
Configuring SharePoint 2013 and Office 365 Hybrid – Part 1
GOLDRAFFLESILVE
R
PLATINU
M
Thank you!
Toronto Enterprise Collaboration User Group
Change Management, Governance, SharePoint, Office 365,
Yammer, PowerBI, etc
http://www.meetup.com/TSPBUG/
Toronto SharePoint Business Users Group
http://www.meetup.com/TorontoSPUG/
Saturday July 9, 2016
See you next year!

More Related Content

PPTX
Hybrid SharePoint - Office 365 & On-prem SharePoint 2013 -part2
PPTX
Sps ottawa 2012 slides - "my SharePoint is a production platform! not facebook!"
PPTX
Worldwide Deployment
PPTX
#EnterpriseBrain EN - #spsnh
PPTX
SPS Detroit 2016 - Sharepoint 2016 and new hybrid scenarios
PPTX
SPCAdriatics - Search Administration and Troubleshooting in SharePoint 2013
PPTX
SharePoint 2013 Admin in the Hybrid World
PPTX
Digital asset management using SharePoint 2013
Hybrid SharePoint - Office 365 & On-prem SharePoint 2013 -part2
Sps ottawa 2012 slides - "my SharePoint is a production platform! not facebook!"
Worldwide Deployment
#EnterpriseBrain EN - #spsnh
SPS Detroit 2016 - Sharepoint 2016 and new hybrid scenarios
SPCAdriatics - Search Administration and Troubleshooting in SharePoint 2013
SharePoint 2013 Admin in the Hybrid World
Digital asset management using SharePoint 2013

What's hot (20)

PPTX
Microsoft Ignite Recap: SharePoint & OneDrive for Business with Vlad & Drew
PPTX
Training – Introduction to SharePoint Online for Collaboration and Document M...
PPTX
Office 365: Do’s and Don’ts, Lessons learned from the field
PPTX
JAXSPUG April 2016 - Staying in the Know with Office 365
PDF
SpUnite17 Exploring Identity Management Options in Office 365
PPTX
Making a real world sharing strategy for SharePoint, OneDrive & Teams
PPTX
Getting Started with Site Designs and Site Scripts - SPSChi
PPTX
Enterprise Content Management + SharePoint 2013 - SPSNH
PPTX
How ECM Has Improved in SharePoint 2013 and What’s Still Missing
PPTX
Enterprise content management overview in SharePoint 2013
PPTX
Sp24 design a share point 2013 architecture – the basics
PPTX
Essentials for the SharePoint Power User - SharePoint Engage Raleigh 2017
PPTX
Entwickler camp2012 how to connect your app to the activity stream with x_pages
PPTX
What's New and Different in SharePoint 2013
PPTX
Taking OneDrive for Business administration to the next level
PDF
Microsoft SharePoint 2013 Overview from Atidan
PDF
SharePoint Overview
PPTX
Webinar: SharePoint 2016: The Future Of Hybrid
PPTX
Core SharePoint 2013 Concepts
PPTX
Everything you need to know about sharing files in SharePoint & OneDrive - SP...
Microsoft Ignite Recap: SharePoint & OneDrive for Business with Vlad & Drew
Training – Introduction to SharePoint Online for Collaboration and Document M...
Office 365: Do’s and Don’ts, Lessons learned from the field
JAXSPUG April 2016 - Staying in the Know with Office 365
SpUnite17 Exploring Identity Management Options in Office 365
Making a real world sharing strategy for SharePoint, OneDrive & Teams
Getting Started with Site Designs and Site Scripts - SPSChi
Enterprise Content Management + SharePoint 2013 - SPSNH
How ECM Has Improved in SharePoint 2013 and What’s Still Missing
Enterprise content management overview in SharePoint 2013
Sp24 design a share point 2013 architecture – the basics
Essentials for the SharePoint Power User - SharePoint Engage Raleigh 2017
Entwickler camp2012 how to connect your app to the activity stream with x_pages
What's New and Different in SharePoint 2013
Taking OneDrive for Business administration to the next level
Microsoft SharePoint 2013 Overview from Atidan
SharePoint Overview
Webinar: SharePoint 2016: The Future Of Hybrid
Core SharePoint 2013 Concepts
Everything you need to know about sharing files in SharePoint & OneDrive - SP...
Ad

Similar to Sharepoint and office 365 hybrid configuration from A to Z #spstoronto 2015 (20)

PDF
Envision it SharePoint Extranet Webinar Series - Federation and Office 365
PPTX
WINDOWS SERVER 2012 R2: Bring Your Own Device Using AD Federation Services
PDF
Envision it Webinar - Extranet Identity Management and Authentication for Sha...
PDF
Envision it SharePoint Extranet Webinar Series - Federation and SharePoint On...
PPTX
Directory Synchronization Single Sign-On in Office 365
PDF
SharePoint Fest Chicago 2014 - Anatomy of SharePoint and Office 365 Hybrid De...
DOC
Srikanth Gattu-SharePoint Developer
PPTX
The Who, What, Why and How of Active Directory Federation Services (AD FS)
PPTX
#spsuk: Understanding the Office 365 Architecture
PPTX
SharePoint 2013 in a hybrid world
PPTX
O365-AzureAD Identity management
PPTX
Understanding SharePoint Apps, authentication and authorization infrastructur...
PPTX
Identity Management for Office 365 and Microsoft Azure
PPTX
What's New for IT Professionals in SharePoint Server 2013
PDF
O365Con18 - Hybrid SharePoint Deep Dive - Thomas Vochten
DOC
Ahmed Salem CV
PDF
BlueHat Seattle 2019 || I'm in your cloud: A year of hacking Azure AD
PDF
Unified client management session from Microsoft partner boot camp
PPTX
Identity Management in SharePoint 2013
PPTX
IoT cloud system implemented based on Azure services
Envision it SharePoint Extranet Webinar Series - Federation and Office 365
WINDOWS SERVER 2012 R2: Bring Your Own Device Using AD Federation Services
Envision it Webinar - Extranet Identity Management and Authentication for Sha...
Envision it SharePoint Extranet Webinar Series - Federation and SharePoint On...
Directory Synchronization Single Sign-On in Office 365
SharePoint Fest Chicago 2014 - Anatomy of SharePoint and Office 365 Hybrid De...
Srikanth Gattu-SharePoint Developer
The Who, What, Why and How of Active Directory Federation Services (AD FS)
#spsuk: Understanding the Office 365 Architecture
SharePoint 2013 in a hybrid world
O365-AzureAD Identity management
Understanding SharePoint Apps, authentication and authorization infrastructur...
Identity Management for Office 365 and Microsoft Azure
What's New for IT Professionals in SharePoint Server 2013
O365Con18 - Hybrid SharePoint Deep Dive - Thomas Vochten
Ahmed Salem CV
BlueHat Seattle 2019 || I'm in your cloud: A year of hacking Azure AD
Unified client management session from Microsoft partner boot camp
Identity Management in SharePoint 2013
IoT cloud system implemented based on Azure services
Ad

More from Nicolas Georgeault (20)

PPTX
CollabCon2024 - From Engage to storyline new experiences to engage leaders an...
PPTX
CollabDays Hungary 2024 - Discovering Process Mining and Task Mining with Pow...
PPTX
M365 Chicago 2024 - From Engage to Storyline, New Experiences to Engage Leade...
PPTX
AI Community Conference - Toronto 2024: Work like a Brain with... AI and Copilot
PPTX
M365 Community Days MTL 2024 - Découverte du Process Mining et du Task Mining...
PPTX
GUM365 - Rencontre mensuelle Avril 2024 - Montréal
PPTX
Construisez votre gouvernance Power Platform
PPTX
aMS Delhi - Are you thinking about building PowerApps on to of SharePoint-Ser...
PPTX
Improve your Dynamics 365 usage with AI
PPTX
Utiliser Process Advisor
PPTX
How to get prepared for Syntex
PPTX
Quelles sont vos opportunités AI dans Microsoft 365
PPTX
How to get prepared for SharePoint Syntex
PPTX
Solving problems! and what we could learn from covid19
PPTX
M365 Saturday Saskatchewan 2020 - Build your #PowerPlatform #Governance
PPTX
M365 Virtual Marathon - Construire votre gouvernance pour la Power Platform
PPTX
Montreal Skype and Teams User Group: Développer une application Microsoft Teams
PPTX
SPS Ottawa 2019: From the field: Modernize your SharePoint Intranet with Shar...
PPTX
ESPC19: What is the cdm and how to use it?
PDF
SPS Calgary 2019 - What if your intranet was a simple bot?
CollabCon2024 - From Engage to storyline new experiences to engage leaders an...
CollabDays Hungary 2024 - Discovering Process Mining and Task Mining with Pow...
M365 Chicago 2024 - From Engage to Storyline, New Experiences to Engage Leade...
AI Community Conference - Toronto 2024: Work like a Brain with... AI and Copilot
M365 Community Days MTL 2024 - Découverte du Process Mining et du Task Mining...
GUM365 - Rencontre mensuelle Avril 2024 - Montréal
Construisez votre gouvernance Power Platform
aMS Delhi - Are you thinking about building PowerApps on to of SharePoint-Ser...
Improve your Dynamics 365 usage with AI
Utiliser Process Advisor
How to get prepared for Syntex
Quelles sont vos opportunités AI dans Microsoft 365
How to get prepared for SharePoint Syntex
Solving problems! and what we could learn from covid19
M365 Saturday Saskatchewan 2020 - Build your #PowerPlatform #Governance
M365 Virtual Marathon - Construire votre gouvernance pour la Power Platform
Montreal Skype and Teams User Group: Développer une application Microsoft Teams
SPS Ottawa 2019: From the field: Modernize your SharePoint Intranet with Shar...
ESPC19: What is the cdm and how to use it?
SPS Calgary 2019 - What if your intranet was a simple bot?

Recently uploaded (20)

PDF
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PPTX
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
PPTX
MYSQL Presentation for SQL database connectivity
PDF
Review of recent advances in non-invasive hemoglobin estimation
PDF
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
PDF
Modernizing your data center with Dell and AMD
PPT
Teaching material agriculture food technology
PDF
Chapter 3 Spatial Domain Image Processing.pdf
PDF
Building Integrated photovoltaic BIPV_UPV.pdf
PDF
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
PPTX
Big Data Technologies - Introduction.pptx
PDF
The Rise and Fall of 3GPP – Time for a Sabbatical?
PDF
Agricultural_Statistics_at_a_Glance_2022_0.pdf
PDF
Machine learning based COVID-19 study performance prediction
PDF
Mobile App Security Testing_ A Comprehensive Guide.pdf
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
PDF
NewMind AI Monthly Chronicles - July 2025
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
MYSQL Presentation for SQL database connectivity
Review of recent advances in non-invasive hemoglobin estimation
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
Reach Out and Touch Someone: Haptics and Empathic Computing
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
Modernizing your data center with Dell and AMD
Teaching material agriculture food technology
Chapter 3 Spatial Domain Image Processing.pdf
Building Integrated photovoltaic BIPV_UPV.pdf
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
Big Data Technologies - Introduction.pptx
The Rise and Fall of 3GPP – Time for a Sabbatical?
Agricultural_Statistics_at_a_Glance_2022_0.pdf
Machine learning based COVID-19 study performance prediction
Mobile App Security Testing_ A Comprehensive Guide.pdf
Dropbox Q2 2025 Financial Results & Investor Presentation
NewMind AI Monthly Chronicles - July 2025

Sharepoint and office 365 hybrid configuration from A to Z #spstoronto 2015

  • 1. Julien “Superman” Stroheker and Nicolas “Batman” Georgeault Negotium Technologies @Ju_Stroh et @NGeorgeault
  • 2. Julien Stroheker Team Lead @ Negotium Technologies  Speaker and blogger  http://www.pimpthecloud.com  https://channel9.msdn.com/Blogs/Pimp-The-Cloud-Show 2
  • 3. Nicolas Georgeault CIO & SharePoint Senior Architect @Negotium 20 years of experience in IT 8 with SharePoint 6 as a SharePoint MVP Co-author of Microsoft SharePoint Server 2010 and 2013 French books 3 Email/Yammer: ngeorgeault@club-sharepoint.fr Twitter: @ngeorgeault Blog: http://blog.georgeault.co
  • 4.  Introduction  Demo  Demo  Demo  Demo  Takeaways 4
  • 5. • SharePoint On-Premises requires a number of Service Applications to support Hybrid • Secure Store is required for inbound Hybrid • User Profile Service required to rehydrate users for Security Trimming
  • 6. Four Steps to Configure Onedrive and Sites Hybrid 1. Infrastructure Pre-Requisites 2. Setup AD Connect (DirSync) 3. ADFS Server and Proxy 4. Hybrid Picker
  • 7. Required Tools • Active Directory Connect - Link • Azure Active Directory Module for Windows PowerShell – Link • SharePoint Online Management Shell – Link
  • 9. Infrastructure Pre-Requisites – Verify Internal Domain • Verify the internal AD domain name with Office 365 – Needs to be a routable domain! • Enables Microsoft to verify that you “own” the domain • If you are using a non-routable domain (.local) for AD – all is not lost! • Verifying a domain increases the Office 365 object limit from 50K to 300K!
  • 10. Infrastructure Pre-Requisites – Verify Internal Domain • In my environment the AD domain is contoso.com which isn’t routable! • I purchased o365ug.ca and associated this with the AD domain contoso.com by adding a UPN Suffix • Updated user accounts to use the new domain
  • 11. Infrastructure Pre-Requisites – Verify Internal Domain • Involves adding a temporary DNS record to the domain • The existence of this record is verified by Microsoft to validate domain ownership • Instructions included for the most common DNS hosting providers
  • 12. Infrastructure Pre-Requisites – Verify Internal Domain
  • 13. Infrastructure Pre-Requisites – Active Directory • AD domain must be at least Windows Server 2003 Forest Functional Level • Run IdFix to identify objects that could cause sync issues and remediate o Illegal characters o Duplicate entries o Length o …
  • 14. Infrastructure Pre-Requisites – Activate Directory Sync PowerShell Admin Center
  • 16. Setting up AD Connect 1. Install and configure the AD COnnect tool – Link 2. Assign user licenses in Office 365
  • 18. Additional Considerations • For greater control over the attributes that are synchronised to Azure AD select Azure AD app and attribute filtering • Password write-back requires Azure AD Premium
  • 20. Directory Synchronisation – Notification e-mail
  • 21. Assigning Licenses using the Office 365 Portal
  • 22. Assigning Licenses using PowerShell • Licenses all users with a Username (UPN) of *.o365ug.ca • Also sets their location to CA
  • 23. AD Connect Schedule • By default AD Connect will sync AD users with Office 365 every 3 hours • A sync can be manually performed using DirectorySyncClientCmd.exe – automate using a Scheduled Task
  • 24. Account • Account is created in AD during AD Connect configuration • Used by AAD Connect to read attributes from AD • This account is granted the following permissions: • Replicating Directory Changes • Replicating Directory Changes All
  • 26. Summary • Added a custom domain to Office 365 (o365ug.ca) • Tidied up AD and activated Directory Sync in Office 365 • Setup Azure AD Connect to sync users from On-Premises AD to Office 365 (Azure AD) • Launch Hybrid Picker from SharePoint 2013 Server with Office 365 Admin account
  • 27. 33
  • 28. 34 Brendan Griffin for his session: Configuring SharePoint 2013 and Office 365 Hybrid – Part 1
  • 30. Thank you! Toronto Enterprise Collaboration User Group Change Management, Governance, SharePoint, Office 365, Yammer, PowerBI, etc http://www.meetup.com/TSPBUG/ Toronto SharePoint Business Users Group http://www.meetup.com/TorontoSPUG/ Saturday July 9, 2016 See you next year!

Editor's Notes

  • #17: IdFix - Walkthrough
  • #18: IdFix undo
  • #19: Verify domain and activate sync
  • #20: UPN update
  • #23: AAD Sync install/configure
  • #24: AAD Sync user tidy up