Active Directory, Azure Active Directory and Azure AD Domain Services Explained

Поделиться
HTML-код
  • Опубликовано: 8 ноя 2024

Комментарии • 95

  • @MisterOA
    @MisterOA 3 года назад +7

    Great video. Now I only have to watch it another 57 times.

  • @martinwettig
    @martinwettig 4 года назад +1

    Additionally to the very good explanations, I would like to point out that we are all in love with the Millenium Falcon hologram on the shelf in the background.

  • @eddiesmurfy
    @eddiesmurfy 3 года назад +1

    Great summary! I've been looking for something that explains these differences in easy to understand terms for talks with my clients who ask questions around these topics. Bravo!

    • @Ciraltos
      @Ciraltos  3 года назад

      Glad it was helpful!

  • @blgdinger3
    @blgdinger3 5 лет назад +1

    holy hell it's about time someone explained it! Microsoft owes you 3 zillion dollars for this video since they can't figure out how to explain it in any of theirs!

    • @Ciraltos
      @Ciraltos  5 лет назад +3

      Thanks! I'll send them an invoice :)

    • @mdd1963
      @mdd1963 4 года назад

      @@Ciraltos I officially award you the ability to freely download a 180 trial use, straight from MS, Of Windows Server 2019!!!! :)

  • @Minerva___
    @Minerva___ 4 года назад +4

    Super helpful video. Its surprising how difficult it is to find something like this in documentation. With regards to Azure AD / Azure AD DS, what are we truly losing without a Domain Administrator or Enterprise Administrator account? Today, my company utilizes AWS' Managed AD solution. Enterprise admin is maintained and managed by AWS (customer does not have access to this account) but maintains a "scoped" domain admin. There is a builtin group to AWS' Managed AD that is automatically created when a new directory is spun up through AWS' Directory Service. Make your new user a member of this group and they will have the most common permissions for Domain Administrators over a specific OU.
    I'm trying to understand some of the caveats I may run into if I opt for Azure AD (and?) Azure AD DS.

  • @suryavirtual758
    @suryavirtual758 4 года назад

    Wow, Travis this is great video, all other videos were so confusing , This is so crisp and clear ..Thanks

    • @Ciraltos
      @Ciraltos  4 года назад

      Glad you enjoyed it!

  • @JohnCutter317
    @JohnCutter317 2 года назад

    Best video on topic .simple question that was hard to find

  • @QuincyNtuli
    @QuincyNtuli 4 года назад +3

    I am improving my skills as a penetration tester and taking part on HackTheBox. Having completed two machines (Forest and Monteverde) the gap demonstrating my lack of understanding of the difference between AD and Azure became apparent. Thank you for this video. Have you got a Udemy channel ?

    • @Ciraltos
      @Ciraltos  4 года назад +3

      Thank you! No Udemy channel but I do have some work published on acloud.guru.

  • @ShehzadKhan-yk3pb
    @ShehzadKhan-yk3pb 2 года назад

    Great work Travis as always.

  • @partyyydude
    @partyyydude 3 года назад

    Excellent overview and comparison of the 3 services, very helpful. Thank you!

    • @Ciraltos
      @Ciraltos  3 года назад +1

      Glad it was helpful!

  • @dumbledore192
    @dumbledore192 3 года назад

    I like it when people with experience are on RUclips

  • @jasonme3557
    @jasonme3557 4 года назад +1

    Very well said. I really do not see a reason for it but as companies are convinced its lower cost then a server. We all have to compile.
    The microsoft tax system.

  • @vighneshpp
    @vighneshpp 2 года назад

    What a Lovely video! Extremely helpful and of great quality!

  • @walterwood44
    @walterwood44 5 лет назад +1

    I am a geologist with a strong IT background but no formal IT training. I have been tasked to setup some VMs for use by our clients to run our MS Access based database software and for single users these are working out OK.
    We are using Azure AD with our Office 365 account and do not have an on-prem server. The direction we want to go in is Windows Virtual Desktop. I have watched your various videos on Azure and have learned a lot. I have setup a WVD VM for work and can connect to it. The problem I have is getting others to connect to the VM. If I understand things correctly, I also need Azure AD Domain Services to allow others in my AD to connect. The problem is when I try to add AAD DS to our subscription, MS always wants me to create a new subscription for Azure. Is there a way around this or am I missing something obvious?

  • @joekilbreth3901
    @joekilbreth3901 4 года назад +1

    Dang. Great video! VERY informative. Thanks for uploading!

  • @LorienDrechsler
    @LorienDrechsler 4 года назад

    Thanks for a great and informative video. Very helpful! So my next question is, "If I can't replace my on-prem AD with Azure, why is AAD and AAD-DS even necessary? To lift-n-shift a legacy website? Seems like a missed opportunity to me. Also, and I know I'll get flamed for this, you're pronouncing Azure wrong. It's not ah-ZURE, it's AZH-er.

  • @vivek.padale
    @vivek.padale 4 года назад

    Thanks Travis for this content...I will appreciate if you answer my query.
    If my on-prem ADDS and Azure ADDS are sync with AAD connect , can i use Azure ADDS to authenticate and authorize on-prem users for intranet resources also.
    And can azure ADDS can be use as an DR for on-prem ADDS.
    Regards,

  • @TheJPomp
    @TheJPomp 4 года назад +1

    Great video, thank you for the information. Can you maybe expand on how Azure ADDS compares to the functionality of Windows ADDS when applied to non-vm devices such as laptops or tablets? Can they be managed solely (or in any way) by Azure ADDS or is Intune required?

    • @RamiAlloush
      @RamiAlloush 2 года назад

      Interested in the answer if you found it. Thanks

  • @Chris-tn7rc
    @Chris-tn7rc 4 года назад

    Thank you! Got to know about the AAD DS and you were able to explain it in detail within this time period. By the way, what kind of applications do you use in making your videos?

    • @Ciraltos
      @Ciraltos  4 года назад +2

      Thanks. I use Davinci Resolve for editing, OBS for screen capture and record the audio with Audacity

    • @Chris-tn7rc
      @Chris-tn7rc 4 года назад +1

      Travis Roberts thank you for sharing

  • @jamiemorris6331
    @jamiemorris6331 3 года назад

    I am currently using in prem AD, but require MFA, what do you suggest?

  • @noelfadel4313
    @noelfadel4313 3 года назад

    Great Explaination Thanks

  • @MahiTechBlog
    @MahiTechBlog 4 года назад

    Great explanation , but slightly slippage to AAD domain service part. Can you clarify it bit wider

    • @Ciraltos
      @Ciraltos  4 года назад

      More to come on Azure AD Domain Services shortly.

  • @jonas2001
    @jonas2001 4 года назад +1

    Awesome explanation!

  • @tanishamatthews2540
    @tanishamatthews2540 4 года назад +1

    Good video. Thanks for posting.

  • @matthewb1739
    @matthewb1739 3 года назад

    If I have Azure AD DS running in azure and no DC's on premise can I just have that running and join all my on premise machines to the AADDS and leveage all the same functions like group policy

  • @joshuaeuceda4635
    @joshuaeuceda4635 3 года назад

    Well thought out and delivered, thank you.

    • @Ciraltos
      @Ciraltos  3 года назад

      Glad it was helpful!

  • @sabofx
    @sabofx 4 года назад

    Crystal clear. Thanx

  • @Traumm9
    @Traumm9 3 года назад

    Excellent talk. Many thanks for sharing (Y)

  • @milesfisher278
    @milesfisher278 4 года назад

    Great video, does anyone know how much this costs? And does this replace the need for a traditional AD service on Microsoft's Windows 10 VDI offering?

    • @Ciraltos
      @Ciraltos  4 года назад +1

      Here is a link to the pricing page azure.microsoft.com/en-us/pricing/details/active-directory-ds/
      It can work with WVD to replace traditional Windows AD.

  • @_Jayonics
    @_Jayonics 4 года назад +1

    Thanks for clearing this all up but wow. Microsoft had to really over complicate this stuff, hell. Setting up Windows Enterprise I couldn't join my AD Domain afterwards because it was Joined to Azure AD, I mean... What?

  • @Cmart6444
    @Cmart6444 Год назад

    Thanks Travis!

  • @stormlight1553
    @stormlight1553 3 года назад

    Great, but one hole i cant figure out. Per your example for one of the reasons why would you do this. (To move a IIS server that doesn't support modern auth. quickly to Azure with out setting up DCs in Azure) Once you set this up and move the IIS server into Azure how does the IIS server then support modern authentication? Just by forking lifting a IIS server into Azure enables IIS to support modern auth? Thanks!!

    • @Ciraltos
      @Ciraltos  3 года назад

      Nothing changes other then the AD DS is a PaaS offering. The advantage is that it’s different then the corporate internal domain. From an architectural standpoint, it would still use IIS auth

    • @stormlight1553
      @stormlight1553 3 года назад

      @@Ciraltos Thanks, so if you want modern auth, or things like conditional access to the IIS server you could do the Azure AD app proxy correct?

    • @Ciraltos
      @Ciraltos  3 года назад

      Correct, that could control access before IIS.

  • @wiber19
    @wiber19 5 лет назад +4

    Wow, I have to say Thank you!

  • @tbakry
    @tbakry 4 года назад +1

    Thank you, Travis. Very helpful.

    • @Ciraltos
      @Ciraltos  4 года назад

      Glad it was helpful!

  • @inkironmojo775
    @inkironmojo775 4 года назад

    Great outline .. thanks

    • @Ciraltos
      @Ciraltos  3 года назад

      You are welcome!

  • @NeerajSharma-ob8wf
    @NeerajSharma-ob8wf 3 года назад

    I'm bit confused why do we need Windows AD once migrated to the Azure cloud. It seems to be duplication for authentication of end users.

  • @hanxiaoyue4958
    @hanxiaoyue4958 4 года назад

    Thanks for clearing this up!

  • @TrojaFojaRugs
    @TrojaFojaRugs 5 лет назад

    Do you have in depth tutorials about these topics ? Great Video

    • @Ciraltos
      @Ciraltos  5 лет назад

      Not yet, but possibly in the future. Thanks!

  • @ernelsonduraisamy8647
    @ernelsonduraisamy8647 3 года назад

    helpful. Got clarity !!!

  • @liudas5377
    @liudas5377 4 года назад

    Nicely done and informative. Thank you.

  • @sanchezryno
    @sanchezryno 4 года назад

    Thanks so much. This is very helpful.

  • @ernestcaravalho9074
    @ernestcaravalho9074 3 года назад

    Good info. Do you consult?

  • @zobs1234
    @zobs1234 2 года назад

    For videos like these I would like to be able hit LIKE 100500 times

    • @Ciraltos
      @Ciraltos  2 года назад

      Thank you X100500 :)

  • @chandrag2536
    @chandrag2536 4 года назад

    Really thanks for clarifying....

  • @faithfaith9196
    @faithfaith9196 4 года назад

    Crystal Clear! Thanks

  • @Shadowfaxx981
    @Shadowfaxx981 5 лет назад

    Great video! Thank you for the info.

  • @aniruddha.purohit
    @aniruddha.purohit 4 года назад

    Can i use Azure Active Directory Domain services for on premises users?
    I do not have on premises domain controller for users/system management and to apply group policies.

    • @Ciraltos
      @Ciraltos  4 года назад

      Yes, but there are some limitations. You can't extend AAD DS to the on-premises network, it would required a persistent connections between the on-prem network and the VNet. Take a look at Intune for user and system management. That may get you what you need without a domain.

  • @alex6900959
    @alex6900959 4 года назад

    Thank you!! Super helpful.

    • @Ciraltos
      @Ciraltos  4 года назад

      Glad it was helpful!

  • @TheDougeman
    @TheDougeman 4 года назад

    Thank you !

  • @jonathanlefebvre8380
    @jonathanlefebvre8380 5 лет назад

    very interesting ! great job

  • @mike4088
    @mike4088 4 года назад

    Subbed. Good info.

    • @Ciraltos
      @Ciraltos  4 года назад

      Thanks for the sub!

  • @VikasSequeira
    @VikasSequeira 5 лет назад

    Could you please make available that table that you showed at 5:15?

    • @Ciraltos
      @Ciraltos  5 лет назад

      Sure, it's at the bottom of the post here www.ciraltos.com/active-directory-domain-service-azure-active-directory-and-azure-active-directory-domain-service-explained/

  • @tenminutetokyo2643
    @tenminutetokyo2643 4 года назад +2

    Where does this mess end.

  • @packutz3411
    @packutz3411 4 года назад

    I'm in network working - All I heard was AD Active Directory Azure Domain Services AD Linux AD Domain Services Azure Samba AD Domain Services Root Domain Servercices AD Azure Services and no Enterprise Admin.

  • @alphabanks
    @alphabanks 4 года назад

    IMO group policy is a big deal and its only available in traditional Active Directory.

    • @Ciraltos
      @Ciraltos  4 года назад

      Azure AD DS supports Group Policies. Azure AD does not.

  • @chairmakerPete
    @chairmakerPete 2 года назад +1

    What a first-class mess microsoft has created.

  • @vikashchandra6262
    @vikashchandra6262 Год назад

    Even I can read from the ppt so why bothering reading it. Just put the ppt instead of video.

  • @sandolfkaiser878
    @sandolfkaiser878 2 года назад

    Du bist ein Textvorleser. Mehr nicht. Verstehst du was du da liest?