diff --git a/windows/keep-secure/implement-microsoft-passport-in-your-organization.md b/windows/keep-secure/implement-microsoft-passport-in-your-organization.md
index b60fcdae26..a9bdf17dbf 100644
--- a/windows/keep-secure/implement-microsoft-passport-in-your-organization.md
+++ b/windows/keep-secure/implement-microsoft-passport-in-your-organization.md
@@ -321,7 +321,7 @@ You’ll need this software to set Windows Hello for Business policies in your e
[Azure AD subscription](https://docs.microsoft.com/azure/active-directory/active-directory-howto-tenant) |
- [Azure AD subscription](https://docs.microsoft.com/azure/active-directory/active-directory-howto-tenant)
-- [Azure AD Connect](https://go.microsoft.com/fwlink/p/?LinkId=616792)
+- [Azure AD Connect](https://docs.microsoft.com/azure/active-directory/active-directory-aadconnect)
- A few Windows Server 2016 domain controllers on-site
- A management solution, such as [Configuration Manager](https://docs.microsoft.com/sccm/index), Group Policy, or MDM
- [Active Directory Certificate Services](https://technet.microsoft.com/windowsserver/dd448615.aspx) (AD CS) without Network Device Enrollment Service (NDES)
@@ -336,7 +336,7 @@ You’ll need this software to set Windows Hello for Business policies in your e
|
- [Azure AD subscription](https://docs.microsoft.com/azure/active-directory/active-directory-howto-tenant)
-- [Azure AD Connect](https://go.microsoft.com/fwlink/p/?LinkId=616792)
+- [Azure AD Connect](https://docs.microsoft.com/azure/active-directory/active-directory-aadconnect)
- [AD CS](https://technet.microsoft.com/windowsserver/dd448615.aspx) with NDES
- [Configuration Manager](https://docs.microsoft.com/sccm/index) for domain-joined certificate enrollment, or [InTune](https://docs.microsoft.com/intune/deploy-use/control-microsoft-passport-settings-on-devices-with-microsoft-intune) for non-domain-joined devices, or a non-Microsoft MDM service that supports Hello for Business
|