Share via


AAD Connect: Configure filtering based on Domain, Organizational Unit and Attribute

With Azure AD Connect Services we can configure which Users, Mail-Enabled Groups,

Computers and Mail enabled contacts are synchronized to Office 365. This can be done in

three ways (Domain, OU, and Attribute based filtering).

For more reading you can go to: https://msdn.microsoft.com/en-us/library/azure/dn801051.aspx

 

Organizational Unit Based Filtering

Step 1: Log on

Log on to the computer that is running AAD Connect by using an account that is a member of the ADSyncAdmins security group.

https://collaborationpro.com/wp-content/uploads/2016/08/SyncService1-300x300.png

Step 2: Sync Manager

Click Start, then click Synchronization Service to open the Synchronization Service Manager.

https://collaborationpro.com/wp-content/uploads/2016/08/SyncService2-300x101.png

Step 3: Connectors

To open the connectors view, click Connectors in the Tools menu.

https://collaborationpro.com/wp-content/uploads/2016/08/SyncService3-1-300x89.png

Step 4: ADDS connector

In the Connectors list, select the connector that has Active Directory Domain Service as

Type.

https://collaborationpro.com/wp-content/uploads/2016/08/SyncService4-300x224.png

Step 5: Configure Directory Partitions

Click Configure Directory Partitions, select the domain you want to configure, and then click Containers.

https://collaborationpro.com/wp-content/uploads/2016/08/SyncService5-300x225.png

Step 6: Credentials

When prompted, enter your domain credentials for the on-premises Active Directory forest.

https://collaborationpro.com/wp-content/uploads/2016/08/SyncService6-300x225.png

Step 7: OU selection

In the Select Containers dialog box, clear the OU's that you don’t want to sync with the cloud directory, and then click OK.

Click OK on the SourceAD Properties page

Step 8: Execute run profiles

Run a full import and a delta sync by completing the following steps:

  • In the connectors list, select SourceAD
  • To open the Run Connector dialog, select Run from the Actions menu.
  • In the Run profiles list, select Full Import, and then wait for the run profile to complete.
  • To open the Run Connector dialog, select Run from the Actions menu.
  • In the Run profiles list, select Delta Synchronization, and then wait for the run profile to complete.