Summary
Working through this chapter you should have gathered the knowledge to be able to design a multi-forest identity synchronization and federation environment, including the AAD Connect Health service for monitoring. Additionally, you should have discovered the most relevant concepts about the new AAD Authentication Library (ADAL) and be able to describe a practical example, such as the usage of Word and SharePoint Online. Finally, you should be able, and feel comfortable, to design a complex hybrid IAM platform with multiple forests. You should also be able to compare ADFS and Azure B2B/B2C functionality for your own design needs. Last but not least, we provided ideas on using additional identity and attribute stores with new Windows Server 2016 ADFS 4.0 capabilities, which will help you to support external user scenarios with a rich subset of providing claims and authentication.
In the following chapter, we will install and configure the enhanced identity infrastructure. In particular...