Creating an Azure AD DS managed domain
This section will cover some planning aspects and information needed for creating Azure AD DS managed domains, and we will finish this chapter with a hands-on exercise section.
The installation of Azure AD DS is carried out in the Azure portal and requires an Azure AD tenant and an Azure subscription. The objects can be cloud-only or synchronized from AD for a hybrid identity scenario.
Two enterprise applications are created in the Azure AD tenant to support the operation of the domain; these should not be removed or edited and consist of the following:
- Domain Controller Services
- Azure AD Domain Controller Service
The managed domain instance is created by Microsoft, which will automatically configure the distribution of the managed DCs across the zones.
The following section will examine the planning aspects required before creating an Azure AD DS managed domain.
Azure AD tenant and subscription
To create Azure...