Webinar Self-service in Microsoft Azure AD Premium Hugh Simpson-Wells : CEO
Agenda What is Azure Active Directory Premium? Self-service demo basis Self-service security groups Self-service application management Self-service password reset Self-service distribution lists Self-service licensing
Azure Active Directory The extension of Active Directory (AD) in the Cloud Tenancy-based You do not have to worry about servers and patches Various redundancy options available, but you don t worry about scaling Versions Free version (anyone who has Office 365 has at least this) Basic version (available only through volume license resellers) AAD Premium (AADP) is the full version (can be bought from the O365 portal or included in Enterprise Management Suite)
Azure Active Directory Versions Features Free edition Basic edition Premium edition Directory as a service <500K Objects User and group management using UI or Windows PowerShell cmdlets Device registration Access Panel portal for SSO-based user access to SaaS and custom applications 10 apps / user No limit 10 apps / user User-based application access management and provisioning Self-service password change for cloud users Azure AD Connect For syncing between on-premises directories and Azure Active Directory Standard security reports High availability SLA uptime (99.9%) Group-based application access management and provisioning Customization of company logo and colours to the Sign In and Access Panel pages Self-service password reset for cloud users Application Proxy: Secure Remote Access and SSO to on-premises web applications Advanced application usage reporting Self-service group management for cloud users Self-service password reset with on-premises write-back Microsoft Identity Manager (MIM) user licenses For on-premises identity and access mgmt Advanced anomaly security reports (machine learning-based) Cloud app discovery Multi-Factor Authentication service for cloud users Multi-Factor Authentication server for on-premises users Azure Active Directory Connect Health to monitor the health of on-premises Active Directory infrastructure, and get usage analytics No limit No app limit
Azure Active Directory Versions Features Free edition Basic edition Premium edition Directory as a service <500K Objects User and group management using UI or Windows PowerShell cmdlets Device registration Access Panel portal for SSO-based user access to SaaS and custom applications 10 apps / user No limit 10 apps / user User-based application access management and provisioning Self-service password change for cloud users Azure AD Connect For syncing between on-premises directories and Azure Active Directory Standard security reports High availability SLA uptime (99.9%) Group-based application access management and provisioning Customization of company logo and colours to the Sign In and Access Panel pages Self-service password reset for cloud users Application Proxy: Secure Remote Access and SSO to on-premises web applications Advanced application usage reporting Self-service group management for cloud users Self-service password reset with on-premises write-back Microsoft Identity Manager (MIM) user licenses For on-premises identity and access mgmt Advanced anomaly security reports (machine learning-based) Cloud app discovery Multi-Factor Authentication service for cloud users Multi-Factor Authentication server for on-premises users Azure Active Directory Connect Health to monitor the health of on-premises Active Directory infrastructure, and get usage analytics No limit No app limit
Hybrid? Most organizations already have Active Directory (AD), and so need a hybrid approach AAD Connect synchronizes on-premises AD with Azure AD Users and groups could originate on-premises and be automatically provisioned to the cloud, or they could be cloud-only (or they could even originate in the cloud and be automatically provisioned to the on-premises AD) Where an object originates on-premises, admins are restricted in what they can do in the Azure portal (the authority stays onpremises)
Demo setup - admin Azure Portal O365 Portal On premises (really in the cloud)
Demo setup - user MyApps Portal Exchange & Sharepoint App: Twitter On premises (really in the cloud)
Self-service (and delegated admin) Self-service password reset Users can reset passwords in the cloud, via various methods Passwords can be written back to on-premises AD Self-service security groups Can be used for lots of things Can include owner authorization Self-service distribution lists still in preview Self-service application management Can actually be done directly (a feature in its own right) or piggy-back off the above (so a self-service group used to assign applications)
Self-service
Sign up for the 2016 Redmond Summit Use coupon code RedSummit16 at checkout for $150 off your registration (regular price is $800) Scan the QR code to get to the summit registration page or go to oxfordcomputergroup.com/events/summit-2016/ #OCGUS16 @OCGUSOfficial