
Create an administrative group called AAD DC Administrators.There are four steps required to set up AAD Domain Services: For more information about setting up AAD, see What is Azure Active Directory? on the Petri IT Knowledgebase.


In this article, I’ll show you how to enable AAD Domain Services to work with an existing AAD tenant. AAD Domain Services supports Kerberos, Windows Integrated Authentication, and NTLM, plus Group Policy and Lightweight Directory Access Protocol (LDAP). In today’s Ask the Admin, I’ll show you how to configure Azure Active Directory (AAD) Domain Services and connect it to your AAD tenant.ĪAD Domain Services allows organizations to “lift-and-shift” apps that use on-premises AD for authentication to the cloud, extending the capabilities of AAD to provide many of the features of an on-premises AD deployments, but without the effort of installing domain controllers (DCs) in the cloud, setting up ExpressRoute, or a VPN to connect on-premises DCs to Azure.
