Share via

Issues setting up kerberos on hybrid domain controller

Cloud Admin 0 Reputation points
2025-07-22T15:12:06.2233333+00:00

Local system is setup with Azure AD Connect, Windows Hello for Business is setup and working, We are attempting to setup Kerberos authentication as well as connecting local file server to cloud services. As we setup new users we want to set them up with Microsoft accounts connected to on prem resources that are cloud synced as well as cloud group policies to slowly migrate users from on prem to cloud.

Environmental Clarification: We have a hybrid environment setup. All users are on prem and synced in Azure/Entra. All users have Entra ID accounts, the end goal is to setup a kind of File share sync from on prem to cloud for the purposes of slowly transitioning users to cloud environment management and resource access.

Microsoft Security | Microsoft Entra | Microsoft Entra External ID
0 comments No comments

1 answer

Sort by: Most helpful
  1. Marcin Policht 87,985 Reputation points MVP Volunteer Moderator
    2025-07-22T15:19:51.9333333+00:00

    Microsoft accounts (MSAs) are personal accounts and are not suitable for enterprise identity scenarios; instead, you should be using Entra ID accounts, which are organizational identities managed through Microsoft Entra. Additionally, there are no true "cloud group policies" in the same way Group Policy Objects (GPOs) work in Active Directory; instead, policy management for cloud-based devices is handled through Microsoft Intune, using configuration profiles, ADMX-backed policies, and security baselines, which offer similar—but not identical—functionality tailored for cloud-native and Entra-joined environments.


    If the above response helps answer your question, remember to "Accept Answer" so that others in the community facing similar issues can easily find the solution. Your contribution is highly appreciated.

    hth

    Marcin

    1 person found this answer helpful.

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.