← cd ~/learn
// learning path · intermediate to advanced
Shrinking hybrid identity
Plan the move from Connect Sync, convert users to the cloud and rethink hybrid join.
0 of 5 read · about 11 minutes in total
- 01Entra Connect Sync is on its way out. Start planning for Cloud Sync.Microsoft has started a phased move of identity sync from Entra Connect Sync to Cloud Sync, and has closed a privilege takeover route in hybrid sync. Here's what both changes mean for you.3 min✓ read
- 02Converting synced users to cloud-managed: Source of Authority is GAYou can now switch an individual Active Directory-synced user to be managed in the cloud, without deleting and recreating it. A big step towards shrinking on-premises AD.2 min✓ read
- 03Hybrid join without Entra Connect: hybrid join using Entra KerberosA new preview lets Windows devices become Entra hybrid joined during provisioning, without device sync through Entra Connect or AD FS.2 min✓ read
- 04BYOD Windows access with Entra registration is now GAUsers, partners and internal guests can now reach corporate resources from personal Windows devices using Entra registration, without joining them to anything.2 min✓ read
- 05Cross-tenant group sync is GA: one group, many tenantsMulti-tenant organisations can now sync security groups from a source tenant into target tenants, alongside the users already synced with cross-tenant sync.2 min✓ read
Progress is saved in this browser only. A post counts as read once you've scrolled most of the way through it.