Cloud Azure Active Directory question

Spanjokus 21 Reputation points

Good day! Question about cloud-based Active Directory. I have a couple of hundred employees in my company who do not need a computer, all tasks are sent to them by mail and to the service of requests, for example, cleaners, locksmiths, electricians, and so on. We are now planning to renew the Microsoft license and it turned out that you have to pay money for each account in AD, so it is logical that we would like to save money and delete such accounts in the local AD.

We read that in Azure you can create such accounts for free and provide them with access to web services that do not work on MS technologies. How best to do this, through the ADAzure Connector, or can you create a virtual machine in Azure and deploy AD on it, and then connect with trust relations?

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,593 questions
{count} votes

1 answer

Sort by: Most helpful
  1. AmanpreetSingh-MSFT 56,506 Reputation points

    Hi @Spanjokus · Thank you for reaching out.

    In Azure AD, you need to pay for only the number of assigned licenses. If a given number of users in your Azure AD tenant don't use any specific features, you are not required to purchase and assign licenses for those users.

    If the users are in your local AD (regardless of whether it is hosted in your on-premises environment or in Azure VM), you would need to purchase CALs.

    You can delete these users from Local AD and create cloud only user accounts in Azure AD to avoid purchasing unnecessary CALs. Unfortunately, this cannot be done by using AD Connect. However, you can export the users in a .csv file and create bulk users in Azure Active Directory as mentioned here:


    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

    0 comments No comments