Microsoft Office 365 - Configure Active Directory Sync - RSA Ready SecurID Access Implementation Guide
2 years ago
Originally Published: 2019-06-19

Sync your on-premesis Active Directory users with Azure Active Directory.

Procedure

1. Install the following components on a domain joined server (not domain controller):

  • Microsoft Online Services Sign-In Assistant for IT Professionals RTW
  • Windows Azure Active Directory Module for Windows PowerShell
  • Microsoft Azure Active Directory Connect

2. On the Microsoft Azure Active Directory Connect User Sign-In page, select your user's sign-in method and click Next.

Note:  For more information, refer to Microsoft article Azure AD Connect user sign-in options.

prereq-3-1.png

3. Enter your Azure AD credentials and click Next.

prereq-3-2.png

4. Enter the connection information for your on-premises directories or forests and click Next.

prereq-3-3.png

5. Select userPrincipalName as the onpremist attribute to use as the Azure AD username and click Next.

prereq-3-4.png

6. Choose to Sync all domains and OUs or Sync selected domains and OUs (and specify them) and click Next.

prereq-3-5.png

7. Configure the Uniquely identifying your users settings and click Next.

prereq-3-6.png

  1. Select how users should be identified in your on-premises directories.
  2. Select how users should be identified with Azure AD

Note:  SOURCE ANCHOR - sourceAnchor is an immutable attribute that acts as the primary key linking the on-premises user with the Azure AD user.  A good candidate value for this attribute is objectGUID.

8. Choose to synchronize all users and devices or choose a subset and click Next.

prereq-3-7.png

9. Select any desired optional features and click Next.

prereq-3-8.png

10. Configure Azure AD app restriction (if needed) and click Next.

prereq-3-9.png

11. Add the following attributes to the Selected Attributes window and click Next.

  • sAMAcountName
  • userPrincipalName
  • objectGUID (user)
  • objectGUID (group)
  • mail
  • displayName

prereq-3-10.png

12. Mark the checkbox Start the synchronization process as soon as the configuration completes and click Install.

prereq-3-11.png

13. Verify your federation configuration and click Verify.

prereq-3-12.png

 

Browse to the Configuration Summary for steps to integrate SecurID Access with Office 365.

You are here
RSA SecurID Access Implementation Guide > Integration Prerequisites > Microsoft Office 365 - Configure Active Directory Sync - RSA Ready SecurID Access Implementation Guide