AAD Flashcards

1
Q

AAD SKU

A
  • FREE
  • OFFICE 365 Apps
  • Premium P1
  • Premium P2
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

AAD Principals

A

User Principal
Service Principal - access is restricted by the roles
Managed Identity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Azure Management Groups

A

7 levels of hierarchy
Comes on top of Subscriptions
Each management group and subscription can only support one parent.
Each management group can have many children.
By default, the root management group’s display name is Tenant root group
Root management group can’t be moved or deleted, unlike other management groups.
Azure AD Global Administrators can elevate the access to RMG

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Azure Hierarchy

A
  • RMG
  • Management Groups
  • Subscriptions
  • Resource Groups
  • Resources
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Azure RBAC/Policies and Mgmt Groups

A

All subscription objects within a management group receives a copy of the role-based access control and policy settings applied to the management group.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Azure Subscription

A

Logical entity that provides entitlement to deploy and consume Azure resources
Logical collection of Azure resources.
Each asset in Azure is deployed to a single subscription.
Administrative security boundary that supports Role-Based Access Control.
Each Azure Subscription has its own Administrators
Global and can contain resources from multiple regions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Azure subscription types

A
  • EA (Enterprise Agreement ) - Volume licensing
    program, 3 years , > 500 users
  • Enterprise Dev/Test
  • Pay as you go
  • Free Trial
  • Cloud Solutions Partner (CSP)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

AAD Premium P1 SKU
- Cost

A

Cost : $6 user/month

  • SSO & MFA
  • Advanced group access management
  • Sync to on-premises AD
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

AAD Premium P2 SKU
- Cost

A

Cost : $9 user/month

Azure Identity Protection

  • Risky Account Detection
  • Risk Investigation
  • Risk based Conditional Access

Azure Identity Governance.

  • PIM
  • Access Reviews
  • Entitlement Management
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Add custom domains

A

Initial domain name (immutable) : domainname.onmicrosoft.com.

Can add custom domain names.
Requires setting a TXT/MX record for the domain

  • TXT Record with Alias (@), Destination and TTL
  • MX Record with Alias (@), Destination, TTL and Priority

Verify from Azure portal

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Azure AD Roles - WHO CAN DO IT

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Azure Roles

A

Owner : Can assign users

Contributor : Cannot assign users

Reader

..

Backup Operator

Security Reader

How well did you know this?
1
Not at all
2
3
4
5
Perfectly