Hi All,
We have a requirement, users in the environment is currently using the primary Authentication method as Password hash synchronization, which has to be changed to ADFS authentication.
In the current environment we have existing ADFS infrastructure in place but there is no federation trust configured between On premises AD and Azure AD.
In addition to that, there are multiple custom domains added as verified domains in Azure AD, which are currently setup with the domain type as "Managed"
Can I use the option "Change user Sing in" on the Azure AD connect server to change the authentication method from "Password Hash Synchronization" to "Federate with ADFS", would it help us to configure the federation trust between On premises AD and Azure AD and then it sets the ADFS as the primary authentication for users ?
As we have multiple domains verified in Azure AD, When we go with the option "change user sign in" in the Azure AD connect server ? Does the Azure AD connect server create the federation trust in the backend using the switch -SupportMultipleDomain ?
If yes, is there any option available in the Azure AD connect server, to convert the other verified domains from managed to federated ?
Please help us with your inputs.