Do you have Entra ID Password Hash Synchronization activated?
Updated by Rob Thomlinson [SSW] 11 months ago. See history
Entra ID PHS synchronizes the password in on-premises Active Directory with Entra ID so you can use your on-premises password to login to cloud services, like Azure or Office 365. It also allows you to implement Seamless Sign-On for domain-joined machines, so users don't need to login twice when opening their emails in a browser, for example.
Entra ID PHS also allows you to have an absolute lean infrastructure on-premises, as the only needed moving part is Entra Connect to be installed in a server or Domain Controller. No agents or internet-facing machines necessary.
The web requests don't even come to your server, they are server by Microsoft's big pool of servers around the globe!

✅ Figure: Good Example – Entra ID PHS infrastructure workflow
You can check out a deep dive of Entra ID PHS in official Microsoft documentation at What is password hash synchronization with Microsoft Entra ID?
Categories
Need help?
SSW Consulting has over 30 years of experience developing awesome software solutions.