Hey all,
Hoping someone here can assist me with setting up a solution.
I am using a migration tool (Dell O365 tools) to provision accounts in Azure/O365, the tools provision, license and sync Calendars etc.
I want to use MSDSA/AAD Connect to sync the passwords and pick up any name changes going forward as a same sign on solution until a year from now when a consolidation of multiple forests into a single directory will happen.
I'm wondering if there is a way to match/sync objects that were created In-Cloud only, and then only sync Password and Name options. In trying to set this up, its like when you wake up from a dream, and you can almost remember what happened. I can see the options, and can understand how they should work, but everything I try doesn't. In the Blog post showing the beta of AAD Connect, there is a "Password Sync" and "Single Sign-On" option set during the installation screens, but I didn't see them when I ran the installer.
The filtering seems to be using include/exclude methodology so I think I might have to use a !=extensionAttribute1=whatIwanttoinclude. Again I am not sure...
What I want MSDSA to do is see a change in an extensionAttribute (the one that was used to provision) which takes the user out of scope of Dell tools and into scope of MSDSA. At this point, the MS sync should see the objects in the cloud and take over sync'ing a limited number of attributes go forward.
Any help would be awesome on how best to set this up...
Hugh