We can consult and implement a number of Azure AD services such as Azure AD Connect and Azure AD Application Proxy.
AZURE AD CONNECT
Microsoft Azure AD Connect enables companies to configure their environments for Hybrid Identity scenarios. By configuring synchronisation between local Active Directory and Azure AD, administrators can still maintain existing users and groups locally while enjoying the benefits that come with cloud services while requiring minimal administration.
Azure AD Connect allows administrators to configure the following identity scenarios;
Depending on licencing, Self-Service Password Reset (SSPR) can be configured via Azure AD Connect to allow users to manage their own password resets, reducing the impact on administrators.
AZURE AD APPLICATION PROXY
Provide access for your users and guests to on-premises applications securely via the Azure AD Application Service. By deploying connector servers to your infrastructure, users can have access to existing applications such as Intranets, SharePoint Server and IIS web applications. By access these applications via Azure AD, services such as Single Sign On (SSO), Azure MFA and Azure Conditional Access can be enforced.
Need to synchronise your on-premises Active Directory accounts with Azure AD or configure your environment for one of the sign-on methods?
How about allowing users to access internal applications via Azure AD Application Proxy?