Exchange hybrid with working cloud services

Mariusz Gora 41 Reputation points
2024-05-13T08:04:50.2066667+00:00

Hello,

We consider to move from Exchange on premise to hybrid deployment.

We also using Teams and soon we plan use Dynamic 365 so we have some AzureAD (EntraID) accounts.

Many accounts from our local AD are "duplicated" (the same email, first, last name, account name, ...) with AzureAD.

Local AD and AzureAD are never synced but they have the same domain.

I have doubts about what will happen with these accounts after synchronizing local AD with AzureAD. I worry users will lost access to Teams (and D365) or their chats and/or planed meetings on Teams after synchronization.

I also would know is there way-back after go to Hybrid Exchange? Can we stop syncing with AzureAD, change back MX records to on-prem Exchange, remove O365 connectors from Exchange on-prem server and serving mail services as before move to hybrid?

In migration wizard we can choose SSL certificate used to communicate with Exchange Online. Our SSL cert for Exchange on premise expires soon. We plan to obtain new one instead renew existing. Is it possible to change cert used to communicate with Exchange Online after migration to hybrid?

Can Exchange Online in Hybrid deployment act as "proxy" for on premise ActiveSync, EWS, OWA and we can disable wide access to these services from public network?

Has anyone had a similar situation and would be able to solve my doubts?

Regards

Mariusz

Microsoft Exchange Online
Microsoft Teams
Microsoft Teams
A Microsoft customizable chat-based workspace.
9,253 questions
Exchange Server Management
Exchange Server Management
Exchange Server: A family of Microsoft client/server messaging and collaboration software.Management: The act or process of organizing, handling, directing or controlling something.
7,394 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Carlos Solís Salazar 17,021 Reputation points MVP
    2024-05-13T22:52:41.7+00:00

    Hello

    Your main challenge is to avoid duplicity of users when configuring Entra ID Connect, to solve this I recommend you to run the ID Fix Tool (https://microsoft.github.io/idfix/).

    When you do a hybrid configuration the emails will not go out or in through Exchange online automatically, as you migrate users they will be able to connect to their mailbox through Office365, unfortunately, office.com will not work as a proxy.

    Hope this helps!

    Remember to accept the answer if it is helpful.