Hello,
I have a customer with an MS 365 account. This account has 40 users in it. 25 of those users work outside of the company's Main Office. The other 15 are administrative and support personnel who use a Windows 2012 R2 Business Essential server to sign into the network.
The 25 outside users have devices joined to their MS 365 tenant and access it using their email address and password. The 15 users in the Main Office sign into the network using their credentials stored in 2012 BE, then access their MS 365 resources using the email address and password. By design, BE never syncs with MS 365 so we have a situation where user ID's and password are not synched (unless done so manually by the end user).
The 2012 R2 server is starting to show its age and the customer wants to shut it down and have MS 365 handle the user security. However, the local office has some resources that are tied into the Directory Service on BE that do not convey to MS 365. To address this, the customer purchased a 'Smart' NAS appliance. This appliance has a LDAP tie-in allowing it to mine an LDAP service, pull in the user accounts, with the end goal being single sign-on for resources both locally and on MS 365.
Well, I need an IP address to connect the LDAP feature to MS365 which isn't available by default. So, the customer authorized me to use their Azure Trial account to see if I could create a virtual network so I could make that connection. Well I went so far as to create a Virtual Network, a Virtual Network Gateway, a Site-to-Site VPN link between Azure and the Main Office, a Win 2019 Virtual Server, a Public IP address to connect to the Azure gateway, and a NIC on the VM to run an RDS session. When I tried to join this VM to the MS 365 network, the internal DNS could not resolve the domain name. Even tried using the fully realized onmicrosoft.com version of it, but no luck.
So, Is there a way to pull the MS365 security account database over the VPN into a non-Microsoft device so that the same user IDs and password can be used to access resources both locally and on MS 365?
Thank you very much for your time.
