AVD join to on premise domain

ADM Bartlomiej Belko 0 Reputation points
2024-10-28T14:07:23.2433333+00:00

We have a Azure host pool with VMs joined to Azure AD only. There is a network connectivity to our on premise domain but some 3rd party apps are not working as expected - these are tools to manage on premise domain. Is it possible to have hybrid scenario now? To join existing AVD into on premise domain?

Azure Virtual Desktop
Azure Virtual Desktop
A Microsoft desktop and app virtualization service that runs on Azure. Previously known as Windows Virtual Desktop.
1,565 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Nikhil Duserla 2,665 Reputation points Microsoft Vendor
    2024-10-28T16:02:07.5766667+00:00

    Hi @ADM Bartlomiej Belko,

    Welcome to the Microsoft Q&A Platform! Thank you for asking your question here.

    Yes, it is possible to join Azure Virtual Desktop (AVD) to an on-premises domain in a hybrid scenario.

    Organizations with existing Active Directory implementations can benefit from some of the functionality provided by Microsoft Entra ID by implementing Microsoft Entra hybrid joined devices. These devices are joined to your on-premises Active Directory and registered with Microsoft Entra ID.

    Microsoft Entra hybrid joined devices require network line of sight to your on-premises domain controllers periodically. Without this connection, devices become unusable. If this requirement is a concern, consider Microsoft Entra joining your devices.

    Configure Microsoft Entra hybrid join: https://learn.microsoft.com/en-us/entra/identity/devices/how-to-hybrid-join?source=recommendations

    Microsoft Entra Connect version 1.1.819.0 or later.

    • Don't exclude the default device attributes from your Microsoft Entra Connect Sync configuration. To learn more about default device attributes synced to Microsoft Entra ID, see Attributes synchronized by Microsoft Entra Connect.
    • If the computer objects of the devices you want to be Microsoft Entra hybrid joined belong to specific organizational units (OUs), configure the correct OUs to sync in Microsoft Entra Connect. To learn more about how to sync computer objects by using Microsoft Entra Connect, see Organizational unit–based filtering.

    Hybrid Identity Administrator credentials for your Microsoft Entra tenant.

    Enterprise administrator credentials for each of the on-premises Active Directory Domain Services forests.

    (For federated domains) At least Windows Server 2012 R2 with Active Directory Federation Services installed.

    Users can register their devices with Microsoft Entra ID. More information about this setting can be found under the heading Configure device settings, in the article, Configure device settings.

    If you have any further queries, do let us know.

    If the answer is helpful, please click "Accept Answer" and "Upvote it."

    User's image


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.