Azure Files - Multi Site Sync w/ Active Directory Auth Integration
Spent some time this week building a multi-site Azure File Sync lab. The goal was to get into the weeds a bit more for a more cloud based file sharing platform that's more robust that's SharePoint. The setup involved:
- New AD forest with Entra sync.
- Four VMs: One primary DC and three RODCs/File Sync servers representing remote sites.
- VNET peering to the main network.
- Azure Storage Sync configuration
- Azure Storage Account bound to AD DS for file share authentication.
I also dug into Microsoft's Entra Kerberos solution for allowing access from non-domain joined devices in WFH scenarios. It's an interesting option that gives access without requiring local domain joins (though a working AD domain is still a pre-req). I opted out of this, to keep it a bit more streamlined in my case.
It was a fun little project. The build and configuration took a few hours, but Azure's platform is pretty bulletproof, so a few docs and some trial and error got us across the finish line.

Comments
Post a Comment