針對混合式 SharePoint 設定 Office 365Configure Office 365 for SharePoint hybrid

摘要: 取得 Office 365 企業版 設定以便與 SharePoint Server 進行混合式整合。Summary: Get Office 365 for enterprises set up for hybrid integration with SharePoint Server.

本文是設定 SharePoint 混合式解決方案程序藍圖的一部分。當您執行本文中的程序時,請務必遵循藍圖This article is part of a roadmap of procedures for configuring SharePoint hybrid solutions. Be sure you're following a roadmap when you do the procedures in this article.

針對混合式 SharePoint 設定 Office 365Configure Office 365 for SharePoint hybrid

在您可以設定混合式環境之前,您必須設定 Office 365 企業版 和 SharePoint Server 之間的一些基本整合。請依照本文所述,進行下列步驟:You have to set up some basic integration between Office 365 for enterprises and SharePoint Server before you can configure a hybrid environment. Do the following steps as described in this article:

  1. 註冊 Office 365。Sign up for Office 365.

  2. 向 Office 365 註冊您的網域。Register your domain with Office 365.

  3. 指派 UPN 網域尾碼。Assign UPN domain suffixes.

  4. 與 Office 365 同步帳戶。Synchronize accounts with Office 365.

  5. 將授權指派給使用者。Assign licenses to your users.

您可能已經完成了其中某些步驟。如果是的話,則不需要重複操作。不過在設定混合式環境之前,請確認您已依照如上所示的順序執行了每個步驟。You might have already done some of these steps. If so, there's no need to repeat them. But be sure you do each of the steps in the order shown above before you configure a hybrid environment.

1. 註冊 Office 3651. Sign up for Office 365

您需要 Office 365 訂閱才能設定與 SharePoint Server 2016 的混合式環境。如果您計劃要設定混合式 商務用 OneDrive,請務必訂閱包含 商務用 OneDrive 的方案。其他所有的 SharePoint 混合式狀況都需要包含 SharePoint Online 的企業版方案。You need an Office 365 subscription in order to set up a hybrid environment with SharePoint Server 2016. If you're planning to configure hybrid OneDrive for Business, be sure to subscribe to a plan that includes OneDrive for Business. All other hybrid SharePoint hybrid scenarios require an Enterprise plan that includes SharePoint Online.

2.向 Office 365 註冊您的網域。2. Register your domain with Office 365

當您註冊 Office 365 時,會提供您一個看起來像 contoso.onmicrosoft.com 的初始網域名稱。不過,為了設定與 SharePoint Server 2016 的混合式環境,您必須在 Office 365 中註冊自有的公用網域 (如 contoso.com)。如需如何執行這項操作的詳細資訊,請參閱<使用 Office 365 中的網域名稱>。When you sign up for Office 365, you're given an initial domain name that looks like contoso.onmicrosoft.com. However, in order to configure a hybrid environment with SharePoint Server 2016, you must register a public domain that you own (such as contoso.com) in Office 365. For detailed information on how to do this, see Work with domain names in Office 365.

3. 指派 UPN 網域尾碼3. Assign a UPN domain suffix

您必須在內部部署 Active Directory 網域中建立符合公用網域的 UPN 網域尾碼 (例如,contoso.com)。接著必須將 UPN 網域尾碼指派給每個想要同步或同盟的使用者帳戶。You have to create a UPN domain suffix in your on-premises Active Directory domain that matches the public domain—for example, contoso.com. Then, you have to assign the UPN domain suffix to each user account that you want to synchronize or federate.

下列程序顯示如何手動執行這些作業。如果您有許多想要同盟的使用者,建議您將所有同盟使用者帳戶放入組織單位 (OU) 中,然後建立指令碼,以變更該 OU 中每個使用者帳戶的 UPN 網域尾碼。如需支援的 DirSync 篩選指引,請參閱<設定目錄同步處理的篩選>。如需如何為這個作業建立指令碼的詳細資訊,請參閱<如何將新的 UPN 指派給我所有的使用者>。The following procedures show how to manually do these tasks. If you have many users whom you want to federate, we recommend that you put all federated user accounts into an organizational unit (OU), and then create a script that will change the UPN domain suffix for each user account in that OU. For supported guidance on DirSync filtering, see Configure filtering for directory synchronization. For information about how to create a script for this, see How Can I Assign a New UPN to All My Users.

在內部部署 DNS 中建立 UPN 尾碼To create the UPN suffix in your on-premises DNS

  1. 在 Active Directory 伺服器上,開啟 [Active Directory 網域及信任]*On the Active Directory server, open *Active Directory Domains and Trusts.

  2. 在左窗格中,於最上層節點上按一下滑鼠右鍵,然後按一下 [內容]*In the left pane, right-click the top-level node, and then click *Properties.

  3. 在 [UPN 尾碼]**** 對話方塊的 [替用的 UPN 尾碼]**** 方塊中,輸入想要用於混合式的網域尾碼,然後按一下 [新增]**** > [確定]****。In the UPN suffixes dialog box, enter the domain suffix in the Alternative UPN suffixes box that you want for hybrid, and then click Add > OK.

如需詳細資訊,請參閱<新增使用者主體名稱尾碼>(https://go.microsoft.com/fwlink/?LinkId=392430)。For more information, see Add user principal name suffixes (https://go.microsoft.com/fwlink/?LinkId=392430).

將 UPN 網域尾碼手動指派給使用者To manually assign a UPN domain suffix to users

  1. 在 [Active Directory 使用者和電腦]**** 的左窗格中,按一下 [使用者]**** 節點。In Active Directory Users and Computers, in the left pane, click the Users node.

  2. 在 [名稱]**** 欄中,於想要同盟的使用者帳戶上按一下滑鼠,然後按一下 [內容]*In the *Name column, right-click the user account that you want to federate, and then click Properties.

  3. 在 [內容]**** 對話方塊中,按一下 [帳戶]**** 索引標籤。In the Properties dialog box, click the Account tab.

  4. 從下拉式清單中,選取上一個程序中所新增的 UPN 網域尾碼 (如下圖所示)。Select the UPN domain suffix that you added in the previous procedure from the drop-down list, as shown in the following picture.

    此圖說明「UPN 尾碼」設定

  5. 針對想要同盟的每個其他使用者帳戶,重複步驟 2 到 4。Repeat steps 2 through 4 for each additional user account that you want to federate.

4.與 Office 365 同步使用者帳戶4. Synchronize user accounts with Office 365

為了設定混合式環境,您必須藉由設定下列其中一項,與 Office 365 同步內部部署 Active Directory 網域服務的使用者帳戶:In order to configure a hybrid environment, you must synchronize your on-premises Active Directory Domain Services user accounts with Office 365 by configuring one of the following:

  • 以密碼同步處理進行目錄同步Directory synchronization with password synchronization

  • 以單一登入 (SSO) 進行目錄同步Directory synchronization with single sign-on (SSO)

如果您選擇了 SSO 選項,也可以設定密碼同步處理作為 SSO 的備援方案,但必須至少設定兩者其中一個 (密碼同步處理或 SSO)。If you choose the SSO option, you can also configure password synchronization if you want to as a backup for SSO, but you must configure at least one of the two (password synchronization or SSO).

如需如何設定這些選項的詳細資訊,請參閱<Office 365 與內部部署環境的整合>。For detailed information on how to configure these options, see Office 365 integration with on-premises environments.

5. 將授權指派給使用者5. Assign licenses to your users

您的每位使用者都必須各自在 Office 365 中擁有授權,才能使用混合式功能。一旦您的帳戶已同步,請將授權指派給使用者Your users must each have a license in Office 365 in order to be able to use hybrid features. Once your accounts are synchronized, assign licenses to your users.