{"id":31,"date":"2026-10-09T08:44:16","date_gmt":"2026-10-09T08:44:16","guid":{"rendered":"https:\/\/hostcare.nl\/?p=31"},"modified":"2026-10-09T10:47:50","modified_gmt":"2026-10-09T10:47:50","slug":"microsoft-entra-connect-sync-belangrijke-wijzigingen-per-7-april-2027","status":"publish","type":"post","link":"https:\/\/hostcare.nl\/?p=31","title":{"rendered":"Microsoft Entra Connect Sync belangrijke wijzigingen per 7 april 2027"},"content":{"rendered":"\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"512\" src=\"https:\/\/hostcare.nl\/wp-content\/uploads\/2026\/10\/Microsoft-Entra-Connect-Sync-7-april-1024x512.png\" alt=\"\" class=\"wp-image-16\" srcset=\"https:\/\/hostcare.nl\/wp-content\/uploads\/2026\/10\/Microsoft-Entra-Connect-Sync-7-april-1024x512.png 1024w, https:\/\/hostcare.nl\/wp-content\/uploads\/2026\/10\/Microsoft-Entra-Connect-Sync-7-april-300x150.png 300w, https:\/\/hostcare.nl\/wp-content\/uploads\/2026\/10\/Microsoft-Entra-Connect-Sync-7-april-768x384.png 768w, https:\/\/hostcare.nl\/wp-content\/uploads\/2026\/10\/Microsoft-Entra-Connect-Sync-7-april-1536x768.png 1536w, https:\/\/hostcare.nl\/wp-content\/uploads\/2026\/10\/Microsoft-Entra-Connect-Sync-7-april.png 1774w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">Vanaf <strong>7 april 2027<\/strong> gelden nieuwe vereisten voor Microsoft Entra Connect Sync. Organisaties die lokale Active Directory-identiteiten synchroniseren met Microsoft Entra ID moeten minimaal versie <strong>2.6.84.0<\/strong> gebruiken \u00e9n <strong>Application-Based Authentication (ABA)<\/strong> hebben geconfigureerd. Wanneer niet aan deze voorwaarden wordt voldaan, kan de synchronisatie stoppen.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Deze technische handleiding beschrijft de noodzakelijke controles, de voorbereiding van de upgrade en de validatie achteraf.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>1. Welke vereisten gelden vanaf 7 april 2027?<\/strong><\/p>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><tbody><tr><td><strong>Onderdeel<\/strong><\/td><td><strong>Vereiste<\/strong><\/td><\/tr><tr><td>Deadline<\/td><td>7 april 2027<\/td><\/tr><tr><td>Minimale versie<\/td><td>Microsoft Entra Connect Sync 2.6.84.0<\/td><\/tr><tr><td>Authenticatie<\/td><td>Application-Based Authentication (ABA)<\/td><\/tr><tr><td>Legacy authenticatie<\/td><td>ServiceAccount moet worden vervangen<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">De softwareversie en de authenticatiemethode moeten <strong>afzonderlijk<\/strong> worden gecontroleerd. Een upgrade schakelt een bestaande connector met ServiceAccount-authenticatie niet noodzakelijk automatisch over naar ABA.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>2. Huidige softwareversie controleren<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Open PowerShell op de Entra Connect-server en voer uit:<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">(Get-Item &#8220;C:\\Program Files\\Microsoft Azure AD Sync\\Bin\\miiserver.exe&#8221;).VersionInfo.ProductVersion<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Controleer of de ge\u00efnstalleerde versie minimaal <strong>2.6.84.0<\/strong> is. Installeer bij voorkeur een recentere, ondersteunde versie. Raadpleeg hiervoor altijd de actuele <a href=\"https:\/\/learn.microsoft.com\/en-us\/entra\/identity\/hybrid\/connect\/reference-connect-version-history\">Microsoft-versiegeschiedenis<\/a>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>3. Authenticatiemethode controleren<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Controleer de connectoridentiteit met:<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Import-Module ADSync<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Get-ADSyncEntraConnectorCredential | Select-Object ConnectorIdentityType<\/p>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><tbody><tr><td><strong>Uitkomst<\/strong><\/td><td><strong>Betekenis<\/strong><\/td><\/tr><tr><td>Application<\/td><td>Application-Based Authentication is geconfigureerd.<\/td><\/tr><tr><td>ServiceAccount<\/td><td>Een migratie naar Application-Based Authentication is vereist.<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">Wanneer de connector nog een serviceaccount gebruikt, kan ABA worden geconfigureerd via de Microsoft Entra Connect-wizard onder <strong>Configure<\/strong> <strong>\u2192<\/strong> <strong>Additional tasks<\/strong> <strong>\u2192<\/strong> <strong>Configure application-based authentication to Microsoft Entra ID<\/strong>. Raadpleeg de <a href=\"https:\/\/learn.microsoft.com\/en-us\/entra\/identity\/hybrid\/connect\/authenticate-application-id\">Microsoft-handleiding voor ABA<\/a> voor de vereisten en benodigde rechten.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>4. Upgrade voorbereiden en uitvoeren<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Maak v\u00f3\u00f3r het uitvoeren van de installatie een korte technische controle:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Leg de ge\u00efnstalleerde versie, authenticatiemethode en huidige configuratie vast.<\/li>\n\n\n\n<li>Controleer of er een staging-server aanwezig is en neem deze mee in de planning.<\/li>\n\n\n\n<li>Controleer de ondersteunde Windows Server- en databaseversies.<\/li>\n\n\n\n<li>Zorg voor een passende back-up, configuratie-export en herstelprocedure.<\/li>\n\n\n\n<li>Plan een onderhoudsvenster: tijdens de upgrade wordt de synchronisatie tijdelijk onderbroken.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Download een ondersteunde versie via het <a href=\"https:\/\/entra.microsoft.com\/\">Microsoft Entra Admin Center<\/a>. Start de installer op de bedoelde Connect-server en doorloop de wizard voor de upgrade met behoud van de synchronisatieconfiguratie. Controleer de keuzes in de wizard, waaronder het hervatten van de synchronisatie na voltooiing.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>5. Service, scheduler en configuratie valideren<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Na de installatie moeten de versie, connectoridentiteit, synchronisatiescheduler en Windows-service opnieuw worden gecontroleerd:<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Import-Module ADSync<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"># Versie<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">(Get-Item &#8220;C:\\Program Files\\Microsoft Azure AD Sync\\Bin\\miiserver.exe&#8221;).VersionInfo.ProductVersion<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"># Authenticatiemethode<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Get-ADSyncEntraConnectorCredential | Select-Object ConnectorIdentityType<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"># Scheduler<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Get-ADSyncScheduler | Format-List SyncCycleEnabled,StagingModeEnabled,SchedulerSuspended<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"># Windows-service<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Get-Service ADSync<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"># Instelling automatische upgrades<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Get-ADSyncAutoUpgrade<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Bij een actieve, niet in staging geplaatste server zijn SyncCycleEnabled = True, StagingModeEnabled = False en SchedulerSuspended = False doorgaans de gewenste waarden. Voor een bewust ingerichte staging-server is StagingModeEnabled = True juist correct.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">De ADSync-service hoort op een actieve server normaal gesproken de status Running te hebben. De instelling voor automatische upgrades staat los van de vraag of de vereiste softwareversie al is ge\u00efnstalleerd.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>6. Synchronisatieresultaten controleren<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Een geslaagde installatie is nog geen bewijs dat alle synchronisatiestappen zonder fouten verlopen. Start daarom de Synchronization Service Manager:<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">&amp; &#8220;C:\\Program Files\\Microsoft Azure AD Sync\\UIShell\\miisclient.exe&#8221;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Open <strong>Operations<\/strong> en controleer de recente import-, synchronisatie- en exportacties voor Active Directory en Microsoft Entra ID. Let op de status success en onderzoek eventuele export- en objectfouten.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>7. Checklist voor de upgrade<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Huidige versie vastgesteld.<\/li>\n\n\n\n<li>Connectoridentiteit gecontroleerd: Application of ServiceAccount.<\/li>\n\n\n\n<li>Eventuele staging-servers meegenomen.<\/li>\n\n\n\n<li>Configuratie, back-up en herstelplan gecontroleerd.<\/li>\n\n\n\n<li>Ondersteunde versie ge\u00efnstalleerd.<\/li>\n\n\n\n<li>Vereiste authenticatie geconfigureerd en geverifieerd.<\/li>\n\n\n\n<li>ADSync-service en synchronisatiescheduler gecontroleerd.<\/li>\n\n\n\n<li>Import-, synchronisatie- en exportresultaten gevalideerd.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Offici\u00eble Microsoft-documentatie<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><a href=\"https:\/\/learn.microsoft.com\/en-us\/entra\/identity\/hybrid\/connect\/reference-connect-version-history\">Microsoft Entra Connect Sync \u2013 Release history<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/learn.microsoft.com\/en-us\/entra\/identity\/hybrid\/connect\/how-to-upgrade-previous-version\">Upgrade van een eerdere versie<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/learn.microsoft.com\/en-us\/entra\/identity\/hybrid\/connect\/authenticate-application-id\">Application-Based Authentication configureren<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Vanaf 7 april 2027 gelden nieuwe eisen voor Microsoft Entra Connect Sync. Ontdek welke versie en authenticatiemethode verplicht zijn en hoe je de upgrade veilig uitvoert en controleert.<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[11,8,12,10,9],"class_list":["post-31","post","type-post","status-publish","format-standard","hentry","category-entra-id","tag-active-directory","tag-entra-connect-sync","tag-hybrid-identity","tag-microsoft-entra-id","tag-powershell"],"_links":{"self":[{"href":"https:\/\/hostcare.nl\/index.php?rest_route=\/wp\/v2\/posts\/31","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/hostcare.nl\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/hostcare.nl\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/hostcare.nl\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/hostcare.nl\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=31"}],"version-history":[{"count":7,"href":"https:\/\/hostcare.nl\/index.php?rest_route=\/wp\/v2\/posts\/31\/revisions"}],"predecessor-version":[{"id":42,"href":"https:\/\/hostcare.nl\/index.php?rest_route=\/wp\/v2\/posts\/31\/revisions\/42"}],"wp:attachment":[{"href":"https:\/\/hostcare.nl\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=31"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/hostcare.nl\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=31"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/hostcare.nl\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=31"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}