Tech Dive: Microsoft Azure Identity Management and Office 365
Tech Dive: Microsoft Azure Identity Management and Office 365 Microsoft Partner Confidential 2
Tech Dive: Microsoft Azure Identity Management and Office 365 Microsoft Partner Confidential 3
Public identity as the control point Active Directory Microsoft apps Other Directories Custom LOB apps ISV/CSV apps Non-MS cloud-based apps PCs and devices Microsoft Partner Confidential 4
Tech Dive: Microsoft Azure Identity Management and Office 365 Microsoft Partner Confidential 5
What is Azure Active Directory? comprehensive developers. Azure Active Directory Premium is an advanced offering that includes IAM capabilities for on-premises, hybrid and cloud environments. Azure AD only manages user accounts not computer accounts. Microsoft Partner Confidential 6
Cloud app discovery AD Agent Logs Active Directory Cloud App Discovery Microsoft Partner Confidential 7
Single set of credentials Connect and sync onpremises directories with Microsoft Azure LDAP v3 Windows PowerShell SQL (ODBC) Web Services ( SOAP, JAVA, REST) *Coming soon Microsoft Partner Confidential 8
Your directory on the cloud Microsoft Partner Confidential 9
Preintegrated SaaS apps in the app gallery
Centrally managed identities and access Your cloud apps are ready when you are. Microsoft Partner Confidential 11
Microsoft Azure AD Sync Tool Formerly known as Dirsync, this tool has been updated to allow for the synchronization of local Active Directory passwords to Azure Active Directory. Also synchronizes users, groups and contacts. This new feature will allow for same user sign in with Microsoft cloud services such as Office 365 Education powered by Azure Active Directory since the username and the password from local AD will be synced up to Azure AD. Microsoft Partner Confidential 12
Azure Active Directory Connect (Preview) Downloads and installs pre-requisites like the.net Framework, Azure Active Directory PowerShell Module and Microsoft Online Services Sign-In Assistant Downloads, installs and configures Dirsync (and in the future, AAD Sync), and enables it in the Azure tenant Configures either password sync or AD FS, on one machine or many, and including any required configuration in Azure Checks to make sure it s all working, and kicks off an initial sync Microsoft Partner Confidential 13
Password Sync versus Single Sign-On Password Sync Single Sign-On (ADFS) Same password to access resources X X Control password policies on-premises X X Support for multi-factor authentication X* X No password re-entry if on premises Authentication occurs in on-premises directory Client access filtering X X X * Limited Support Microsoft Partner Confidential 14
Preparing for DirSync From the Windows Azure Management Portal Activation of the Azure AD domain is required for synchronization. Microsoft Partner Confidential 15
Tech Dive: Microsoft Azure Identity Management and Office 365 Microsoft Partner Confidential 16
Built on top of the free offering, provides a robust set of capabilities to empower enterprises with more demanding needs on identity and access management Paid offering Licensed per user Currently available on EA only
Microsoft Azure Active Directory Premium Directory as a service on Microsoft Azure Create multiple directories Extend Windows Server AD with Microsoft Azure Pre-integrated popular SaaS applications for SSO SLA* No object number limitation** Manage users accounts Add cloud-based applications for SSO Add SaaS apps from the application gallery for SSO Group management Assign app access to users Provision users to featured pre-integrated SaaS apps Use groups to control access to SaaS apps Group-based provisioning Build-in security Secure tools for synchronization (DirSync) Block user access Security reports Machine learning-based security reports Multi-factor authentication* Single screen with assigned SaaS apps for every user: Access Panel Single sign on for SaaS apps from Access Panel Change password for cloud users Self-service password reset for cloud users Customized Access Panel Company Branding Microsoft Partner Confidential 18
Tech Dive: Microsoft Azure Identity Management and Office 365 Microsoft Partner Confidential 19
US SMB Partner Microsoft Confidential 20
Get started Get ready, get set Overview of Azure Active Directory Azure AD Application Integrations Go! Administer your Azure AD Tenant Access your Office 365 Azure AD Tenant 21