Azure Active Directory



Similar documents
Webinar Self-service in Microsoft Azure AD Premium

Creating a Single Sign on Web Portal using Azure. Robert Crane Office 365

SINGLE & SAME SIGN-ON ASPECTS

Microsoft Enterprise Mobility Suite

Overview of Microsoft Enterprise Mobility Suite (EMS) Cloud University

Microsoft Enterprise Mobility Suite

Microsoft Enterprise Mobility and Client Futures

Azure Active Directory

Enterprise Mobility Suite (EMS) Sean Lewis Principal Partner Technology Strategist

Ondřej Výšek Sales Lead, Microsoft MVP.

Bill Fiddes Learning and Development Specialist Rob Latino Program Manager in Office 365 Support

Planning your Microsoft Application Strategy in a Cloud Crazy World. Steve Soper Senior Managing Partner

Alexander De Houwer Technology Advisor Devices Win 10 Vincent Dal Technology Advisor Business Productivity

Agenda. Enterprise challenges. Hybrid identity. Mobile device management. Data protection. Offering details

Identity and Access Management for the Hybrid Enterprise

Enterprise Mobility Suite Overview. Joe Kuster Catapult Systems

Mobile device and application management. Speaker Name Date

Andrej Zdravkovic Regional Vice President, Platform Solutions Intellinet

WHITEPAPER. 13 Questions You Must Ask When Integrating Office 365 With Active Directory

Azure Active Directory Solutions for Identity and Access Management. February 2015

Cloud-Accelerated Hybrid Scenarios with SharePoint and Office 365

Hybrid Cloud Identity and Access Management Challenges

Identity + Mobile Management + Security = Enterprise Mobility Suite

Google Identity Services for work

Identity & Access Management in the Cloud: Fewer passwords, more productivity

Microsoft Azure Multi-Factor authentication. (Concept Overview Part 1)

Extend and Enhance AD FS

IT Exam Training online / Bootcamp

Course 20533: Implementing Microsoft Azure Infrastructure Solutions

Flexible Identity Federation

Implementing Microsoft Azure Infrastructure Solutions

Implementing Microsoft Azure Infrastructure Solutions

People-centric IT: Bedeutung für das Identity und Access Management. Uwe Lüthy Solution Sales Specialist Core Infrastructure Microsoft Schweiz Gmbh

NCSU SSO. Case Study

Speeding Office 365 Implementation Using Identity-as-a-Service

Enterprise Mobility Services

Implementing Microsoft Azure Infrastructure Solutions 20533B; 5 Days, Instructor-led

Implementing Microsoft Azure Infrastructure Solutions

managing SSO with shared credentials

Course 20533B: Implementing Microsoft Azure Infrastructure Solutions

Centrify Cloud Connector Deployment Guide

Connecting Users with Identity as a Service

Collaborating with External Users

CCT Technologies Inc., dba ComputerLand of Silicon Valley Complete Technology Solutions Provider headquartered in San Jose, California Serving

Identity. Provide. ...to Office 365 & Beyond

Federated single sign-on (SSO) and identity management. Secure mobile access. Social identity integration. Automated user provisioning.

Identity Federation: Bridging the Identity Gap. Michael Koyfman, Senior Global Security Solutions Architect

Agenda. Federation using ADFS and Extensibility options. Office 365 Identity overview. Federation and Synchronization

Microsoft SharePoint Architectural Models

Total Cost of Ownership Overview ADFS vs OneLogin WHITEPAPER

Enterprise Mobility Suite (EMS) Overview

I believe. Satya Nadella CEO, Microsoft. History of making big bets

Ariett Purchasing & Expense Management. Go Paperless, Go Mobile, Go Easy.

SAML-Based SSO Solution

Single Sign-on for Office 365, Microsoft Azure and On-Premises Environments:

The Top 5 Federated Single Sign-On Scenarios

Digicomp Microsoft Evolution Day MIM 2016 Oliver Ryf. Partner:

solution brief February 2012 How Can I Obtain Identity And Access Management as a Cloud Service?

EXECUTIVE VIEW. SecureAuth IdP. KuppingerCole Report

Directory Integration with Okta. An Architectural Overview. Okta Inc. 301 Brannan Street San Francisco, CA

How To Make Your Computer System More Secure And Secure

Please contact Cyber and Technology Training at for registration and pricing information.

Implementing Microsoft Azure Infrastructure Solutions

User Management Tool 1.5

Hosting Models. Business Model Software (as a Service) Platform (as a Service) Infrastructure (as a Service) On Premises. Applications. Data.

How To Make A Multi-Tenant Platform Secure And Secure

MICROSOFT EXAM QUESTIONS & ANSWERS

identity as the new perimeter: securely embracing cloud, mobile and social media agility made possible

Easy as 1-2-3: The Steps to XE. Mark Hoye Services Portfolio Consultant

Copyright

Multi-Factor Authentication for OWA in Exchange Online Dedicated

PROVIDING SINGLE SIGN-ON TO AMAZON EC2 APPLICATIONS FROM AN ON-PREMISES WINDOWS DOMAIN

Google Apps Deployment Guide

Alex Wong Senior Manager - Product Management Bruce Ong Director - Product Management

Implementing Microsoft Azure Infrastructure Solutions

Big data variety, 179 velocity, 179 volume, 179 Blob storage containers

An Overview of Samsung KNOX Active Directory-based Single Sign-On

How To Manage Your Online Experiences On Windows Achemosade Online (Windows) And On-Premises) With A Free Version Of Windows.Com (Windows.Com) On A Microsoft Powerbook (Windows).Com) For Free Recipe

Building High Growth Services on the Microsoft Cloud Platform. Rich Cannon Senior Director, US Partner Hosting and Cloud Services

HOW MICROSOFT AZURE AD USERS CAN EMPLOY SSO

Extending your datacenter to the cloud

IBM Tivoli Federated Identity Manager

Federation At Fermilab. Al Lilianstrom National Laboratories Information Technology Summit May 2015

Quality Management Consultancy

Extending Identity and Access Management

Pick Your Identity Bridge

SECURITY AND REGULATORY COMPLIANCE OVERVIEW

Identity Governance Evolution

Advanced Configuration Steps

Single-Sign-On between On-Premises and the Cloud: Leveraging Windows Azure Active Directory to authenticate custom solutions and Apps

Getting Started with Clearlogin A Guide for Administrators V1.01

Mod 2: User Management

An Overview of Samsung KNOX Active Directory and Group Policy Features

The Challenges of Web single sign-on

Transcription:

Azure Active Directory Your Cloud Identity Brian Mansure Azure Specialist bmansure@enpointe.com

Agenda What Azure Active Directory is What Azure Active Directory is not Hybrid Identity Features Roadmap

Mobility is the new normal 66% 25% 33% of employees use personal devices for work purposes.* of all software will be available on a SaaS delivery by 2020.** of employees that typically work on employer premises, also frequently work away from their desks.*** *CEB The Future of Corporate ITL: 203-2017. 2013. **Forrester Application Adoption Trends: The Rise Of SaaS ***CEB IT Impact Report: Five Key Findings on Driving Employee Productivity Q1 2014.

Devices Apps Data

The current reality

People-centric approach Devices Apps Data Enable your users Unify your environment Protect your data

What is Azure Active Directory? Azure Active Directory (Azure AD) is Microsoft s multi-tenant cloud based directory and identity management service It combines directory services, advanced identity governance, application access management and a rich standards-based platform for developers Available in 3 editions: Free, Basic and Premium

Windows Azure Active Directory You host it, on-premises / Cloud You manage the infrastructure and the data Core Services: Active Directory services Kerberos authentication NTLM authentication Active Directory Lightweight Directory Services (AD LDS) Active Directory Federated Services (AD FS) Active Directory Certificate Services (AD CS) Active directory Rights Management Services (AD RMS) Microsoft hosts it in their datacenters Microsoft manages the infrastructure You manage the data Core Services: Windows Azure Active Directory services Federated authentication WS-Federation SAML Oauth 2.0 More to come Windows Azure Access Control Service (ACS)

Windows Azure Active Directory Runs from 28 datacenters spread across the globe with automated failover The directory behind Office 365 On average 14 billion authentications every week 99.9% availability guarantee (Basic and Premium)

* Azure Active Directory Connect * PowerShell SQL (ODBC) Microsoft Azure Active Directory LDAP v3 Web Services ( SOAP, JAVA, REST) Other Directories

Hybrid Identity Delivering a seamless user authentication experience = Same Sign-on Users will be able to have a single set of credentials to access their cloud applications but will be prompted for username and password = Single Sign-on Users will experience true single sign-on for cloud applications and on-premises applications alike Windows Azure Conference 2014

Other Directories Microsoft Azure Active Directory SaaS apps

Other Directories Microsoft Azure SaaS apps Web Apps (Azure Active Directory Application Proxy) Integrated custom apps

Centrally managed identities and access IT professional

alerts. Monitor and protect access to enterprise apps

alerts. Monitor and protect access to enterprise apps

How Azure Multi Factor Authentication works

http://myapps.microsoft.com

http://myapps.microsoft.com

Cloud App Discovery SSO with SaaS AD Agent Logs Active Directory Cloud App Discovery

Discover all SaaS apps in use within your organization 10x as many Cloud apps are in use than IT estimates Source: Help Net Security 2014 Azure Active Directory Cloud App Discovery Comprehensive reporting SaaS app category Number of users Utilization volume

Rich standards-based platform for developers

Azure Active Directory Looking Forward Business to Business Business to Consumers Azure AD Directory Domain Services Administrative Units Conditional Access Cloud Domain Joined (Windows 10)

Identity as the control plane Simple connection Self-service Single sign on Windows Server Active Directory Other Directories Username Azure Public cloud SaaS Office 365 On-premises Microsoft Azure Active Directory Cloud

Directory as a Service 500,000 Object Limit No Object Limit No Object Limit Common Features User/Group Management (add/update/delete) Yes Yes Yes SSO to pre-integrated SAAS Applications /Custom Apps 10 apps per user 10 apps per user No Limit User-Based access management/provisioning Yes Yes Yes Self-Service Password Change for cloud users Yes Yes Yes Connect (Sync engine that extends on-premises directories to Azure Active Directory) * Yes Yes Yes Security Reports/Audit 3 Basic Reports 3 Basic Reports Advanced Security Reports Premium + Basic Features Group-based access management/provisioning Yes Yes Self-Service Password Reset for cloud users Yes Yes Company Branding (Logon Pages/Access Panel customization) Yes Yes Application Proxy Yes Yes SLA Yes Yes Self-Service Group Management Yes Self-Service Password Reset/Change with on-premises write-back Yes Advanced Usage Reporting Yes Premium Features Multi-Factor Authentication (Cloud and On-premises (MFA Server)) MIM CAL + MIM Server Administrative Units Cloud App Discovery Conditional Access : MFA per application (in Preview) Automated password roll-over (in Preview) Yes Yes Yes Yes Yes Yes Connect health Yes

Enterprise Mobility Suite Microsoft Azure Active Directory Premium Security reports, audit reports and multi-factor authentication Self-service password reset and group management Connection between Active Directory and Azure Active Directory Mobile device settings management Windows Intune Mobile application management Selective wipe Microsoft Azure Rights Management Information protection Connection to onpremises assets Bring your own key Detect threats fast with behavioral analytics Advanced Threat Analytics Adapt as fast as your enemies Reduce false positives

THANK YOU QUESTIONS? Brian Mansure Azure Specialist bmansure@enpointe.com