Back

What to Consider in an Office 365 Hybrid Exchange Deployment

The advantages of cloud solutions like Office 365 are clear But as an IT admin you want to maintain administrative control over your email environme...

4 min read
Published on Jun 22, 2017
What to Consider in an Office 365 Hybrid Exchange Deployment

The advantages of cloud solutions like Office 365 are clear. But as an IT admin, you want to maintain administrative control over your email environment. An Office 365 hybrid Exchange deployment combines the best of Exchange and the cloud into one powerhouse solution.

Need help with your hybrid Exchange deployment? Click here.

With Office 365, you gain the seamless look and feel of an on-premises Exchange Server with Exchange Online. A hybrid solution is a great segue to fully migrating to Exchange Online.

Office 365 Hybrid Exchange Deployment FAQs

Why would you use a hybrid deployment?

If you’re considering migrating to Office 365 from an on-premises server, an Office 365 hybrid Exchange deployment can help bridge the gap. Hybrid Exchange deployments are sustainable for over time, so you can gradually migrate to Office 365. This environment allows users with on-premises mailboxes to find others in the Exchange Online global address list. Users can send, receive and reply to emails to other users regardless whether their mailbox is on-premises or online.

What features will you gain in an Office 365 hybrid Exchange deployment?

An Office 365 hybrid Exchange deployment offers several features to secure mail routing between both environments.

Transport Layer Security

The platform authenticates, encrypts and transfers emails sent between recipients in either environment through Transport Layer Security (TLS). TLS disguises the messages so users never notice a change, though their messages are protected.

Free/busy and calendar sharing

is also available between on-premises and Office 365 — and a major benefit of hybrid deployments. Users can share and view one another’s calendars across environments, easing meeting scheduling and sharing resources.

Establishing custom routing of outbound emails between both environments

Office 365 can route outbound messages through your on-premises server or a hosted service. In turn, you gain data loss prevention, post-processing of outgoing emails and a private network to emails partners.

Address Rewrite

A hybrid environment also supports Address Rewrite, which routes outgoing emails through your on-premises server to modify the address. This masks your sub-domains and makes your emails appear to come from a single domain — even if you have a multi-domain environment.

What should you consider about this type of deployment?

Before you take the hybrid route with your business email deployment, there are a few things to consider.

Review the hybrid Office 365 requirements

Before choosing this migration strategy, ensure your on-premises solution meets the prerequisites of a successful deployment of both environments. For instance, Office 365 Business plans do not support hybrid setups. (Check out our Office 365 License Comparison here.)

Check the version of your Exchange

Only select Exchange versions that support hybrid Exchange deployments. For instance, an Exchange 2016/Office 365 hybrid deployment only works with Exchange 2016, 2013 and 2010. If you’re using Exchange 2007 or 2010, you’ll have to upgrade to a newer version before migrating. If you have the latest version of Exchange, you should have at least one server operating under the Mailbox role.

Update mailbox users to Office 365

When you move mailboxes between environments, all mailbox users should be updated to Office 365, including Exchange ActiveSync devices.

Many of these clients are automatically reconfigured when the mailbox is moved to Office 365. Older devices may have issues, so be sure to check which devices support Exchange ActiveSync.

Devise a plan to configure permissions within Office 365

Permissions such as Send As and Receive As, which are applied to the mailbox, migrate to Office 365 explicitly. Non-explicit, or inherited, permissions on mailbox and non-mailbox objects don’t migrate over.

Because of this, you should have a plan to configure permissions within Office 365. You can use Add-RecipientPermission and Add-MailboxPermission Windows PowerShell to help set the proper permissions in Office 365.

Which components and services are available in a hybrid deployment?

You can expect to see several services and components in a hybrid environment. Some include:

Exchange Online

Office 365 includes Exchange Online, which you’ll use in a hybrid deployment.

You’ll need to purchase a license for every mailbox you migrate or create in the hybrid environment using Exchange Online. This is why many businesses use this solution as a transitional step before a complete Office 365 migration.

Azure AD authentication and synchronization

AD authentication is free and serves as a trust broker between the on-premises Exchange and Exchange Online, though you’ll need a federation trust with the AD authentication. AD sync uses Azure AD Connect to duplicate an on-premises AD for the mail-enabled objects available in Office 365 to support the global access list.

Azure AD Connect

In the hybrid environment, you will need to deploy Azure AD Connect on your on-premises server to sync Office 365 with your on-premises AD.

Migrate with confidence

Ready to complete your hybrid Exchange deployment? Or still unsure whether it’s the right solution for your business? Agile IT’s cloud specialists can help.

Contact us here to discuss your project needs.

This post has matured and its content may no longer be relevant beyond historical reference. To see the most current information on a given topic, click on the associated category or tag.

Related Posts

Common Questions About Azure Migration Answered

Common Questions About Azure Migration Answered

Get answers to the most common Azure migration questions. Learn about costs, best practices, security, compliance, and troubleshooting cloud migration challenges.

Apr 29, 2025
3 min read
AVD vs W365 in GCC high reducing your CMMC scope

AVD vs W365 in GCC High Reducing Your CMMC Scope and Simplifying Compliance

Comparing AVD vs W365 for GCC High? Learn how each can reduce your CMMC assessment scope and simplify security and compliance management in government environments.

Apr 28, 2025
7 min read
Office 365 License Comparison: Business Plans Vs. E5, E3 and E1

Implementing Cybersecurity Policies for CMMC Compliance and Managing CUI

CMMC compliance requires well-documented cybersecurity policies. Learn how to implement security controls, create an SSP and POA&M, and manage Controlled Unclassified Information (CUI).

Apr 25, 2025
7 min read
CMMC compliance for DoD contractors

CMMC Compliance Requirements for DoD Contractors and Subcontractors in the Defense Industry

CMMC compliance is mandatory for DoD contractors and subcontractors. Learn about certification levels, requirements, and the consequences of failing to meet compliance.

Apr 24, 2025
6 min read
How to prepare for a CMMC compliance audit

CMMC Compliance Audit Preparation: A Complete Checklist for Small Businesses

Preparing for a CMMC compliance audit is critical for DoD contractors. Use this checklist to perform a gap analysis, assess CMMC readiness, and prepare for a Level 2 assessment.

Apr 23, 2025
8 min read
FAR CUI vs CMMC Understanding

FAR CUI vs CMMC Understanding the Differences and Overlaps

FAR CUI and CMMC both focus on protecting sensitive federal data, but they have key differences. Learn how they work together and whether FAR CUI compliance aligns with CMMC.

Apr 15, 2025
10 min read

Ready to Secure and Defend Your Data
So Your Business Can Thrive?

Fill out the form to see how we can protect your data and help your business grow.

Loading...
Secure. Defend. Thrive.

Let's start a conversation

Discover more about Agile IT's range of services by reaching out.

Don't want to wait for us to get back to you?

Schedule a Free Consultation

Location

Agile IT Headquarters
4660 La Jolla Village Drive #100
San Diego, CA 92122

Secure. Defend. Thrive.

Don't want to wait for us to get back to you?

Discover more about Agile IT's range of services by reaching out

Schedule a Free Consultation