Install Azure AD Connect

45 minutes
  • 3 Learning Objectives

About this Hands-on Lab

Bridging On-Premises Directory Services and Azure Active Directory is one of the more common tasks an Azure Engineer is likely to be faced with in this Hybrid Cloud centric age.

In this hands-on lab, engineers will deploy an Azure Virtual Machine and install directory services to it, then install the Azure Active Directory Connect software, attaching it to the local domain in preparation for a future connection to Azure AD.

Learning Objectives

Successfully complete this lab by achieving the following learning objectives:

Create and Deploy a Virtual Machine

Use ‘West US’ when asked location and asked for a resource group.

Deploy a VM:

  1. The VM name can be anything (MythicalDC001 in this example).
  2. The VM should be imaged with Windows Server 2019.
  3. The VM Size should be B2ms.
  4. Username/Password can be anything (mythicaladmin and Crystal1Montana! in this example)
  5. Change Public Inbound Ports to None.
  6. Set NIC NSG to Advanced.
  7. Set Boot Diagnostics to Off.
Ensure Port 3389 is open, RDP to server, and install the ADDS Role.

Install Active Directory Domain Services:

  1. Copy the Public IP from the VM Overview.
  2. Create the inbound exception in NSG for Port 3389.
  3. Set RDP to the Public IP.
  4. Disable IE Enhanced Security Configuration.
  5. Right-click the server name and install ADDS Role.
Promote Server to Domain Controller, then download and install Azure AD Connect

Note: Being unable to complete the install of AD Connect is to be expected.

Promote to DC and Install AD Connect:

  1. Click the promote link after ADDS role installs.
  2. Create a new Forest. It can be named anything (mythical.domain in this example).
  3. DSRM password can be anything (Crystal1Montana! in this example)
  4. After the server reboots, reconnect via RDP.
  5. Download Azure AD Connect software via Internet Explorer.
  6. Install Azure AD Connect software.

Additional Resources

In this lab, we take on the role of a system administrator for Mythical Corp. In preparation for the future integration of our on-premises domain controllers and our new Azure AD domain, we will deploy a VM, install the AD services, install the AD Connect software. We will not complete the installation, but we will be able to fully validate our infrastructure and confirm that the setting we are interested in selecting is available, and all prerequisites are met.

What are Hands-on Labs

Hands-on Labs are real environments created by industry experts to help you learn. These environments help you gain knowledge and experience, practice without compromising your system, test without risk, destroy without fear, and let you learn from your mistakes. Hands-on Labs: practice your skills before delivering in the real world.

Sign In
Welcome Back!

Psst…this one if you’ve been moved to ACG!

Get Started
Who’s going to be learning?