Office 365 Directory Synchronization Update: Deploying Password Sync
Directory Sync Update: Deploying Password Sync
5
Enable password sync Initial sync Password during activation Force a full sync Monitor events
Manage DirSync Activate Users Sync Directories Setup DirSync Activate DirSync Prepare for DirSync
Cloud Identity no integration to on-premises directories Directory & Password Synchronization Integration without federation Federated Identity Single federated identity and credentials
FeaturePassword SyncSSO with AD FS Use same username + password Control password policy on-premises Support for two-factor authentication * No password re-entry if on-premises Client access filtering Authentication occurs on-premises (no credentials on cloud) Change password available from the web Support for multi-forest configurations (FIM) * Azure AD offers basic 2FA features with Azure Active Authentication AD FS can support a larger set of 2FA/Strong Authentication options
Manage DirSync Activate Users Sync Directories Setup DirSync Activate DirSync Prepare for DirSync
Manage DirSync Activate Users Sync Directories Setup DirSync Activate DirSync Prepare for DirSync
Manage DirSync Activate Users Sync Directories Setup DirSync Activate DirSync Prepare for DirSync
Manage DirSync Activate Users Sync Directories Setup DirSync Activate DirSync Prepare for DirSync
Manage DirSync Activate Users Sync Directories Setup DirSync Activate DirSync Prepare for DirSync
Application Log, Event Source = Directory Synchronization Password synchronization starts retrieving updated passwords from the on-premises AD DS Event ID 650 Finished retrieving updated passwords from on-premises AD DS Event ID 651 success Failed to retrieve updated passwords from on-premises AD DS Event ID 652 error
Application Log, Event Source = Directory Synchronization Password synchronization starts informing Windows Azure AD that there are no passwords to be synced Event ID 653 Finishes informing Windows Azure AD that there are no passwords to be synced Event ID 654 success Failed to inform Windows Azure AD that there are no passwords to be synced Event ID 655 error ** This occurs every 30 minutes if no passwords have been updated on-premises
Application Log, Event Source = Directory Synchronization Password synchronization detects password changes and tries to sync it to Windows Azure AD Event ID 656 User(s) whose password was successfully synced Result : Success Event ID 657 success User(s) whose password was not synced Result : Failed error ** Lists at least 1 user, at most 50 users