question

adamjamal avatar image
0 Votes"
adamjamal asked sikumars edited

Azure AD DS FSMO Roles

Hello,

I wonder if someone can answer these questions? We're planning to move out infrastructure to Azure, however when planning the move of IaaS AD DS to Azure; I came across this article which says Microsft do not recommend moving the FSMO roles to Azure:

https://docs.microsoft.com/en-us/azure/architecture/reference-architectures/identity/adds-extend-domain#active-directory-operations-masters

Is this information still accurate? What are the reasons for this? Does this mean I have to retain some hardware to keep a single AD server running on-premise? Is the only option to consume modern auth?

Many thanks

windows-active-directory
· 3
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

Hi Adam,

Did you ever find out if it was recommended or not? Or why its not recommended?

Thanks

0 Votes 0 ·

Hello,

I came across this thread which suggest that if all your DCs is it Azure it should not be an issue :
https://social.msdn.microsoft.com/Forums/en-US/7eb67cc3-6fa2-4f81-8df4-aa4c72315c87/every-fsmo-role-in-azure?forum=WindowsAzureAD

Regards,


0 Votes 0 ·

0 Answers