We want to create the best way to achieve multi-tenant, single sign on between Office 365 (WAAD with ACS), Microsoft CRM 2013 and our local AD (Windows Server 2012 R2). So we want to authenticate global to local, where Office 365 is our primary User Management Environment. There must be a STSProxy we think.
As far as we know, CRM is multi-tenant but is not able to connect to one Identity Provider with multiple domains.
A setup we like is visualized in the image below.
Could you please create the connection for us?