Active Directory Flashcards
What does Active Directory provide?
Single sign-on (SSO) and Multi-factor authentication (MFA)
What are the 4 pricing tiers for AD?
Free, Office 365 Apps, Premium P1, and Premium P2
What pricing tier do you need to provide ‘Identity Protection’ and ‘Identity Governance’?
Premium P2
What is the acronym RBAC stand for?
Role Based Access Control
What 3 things to you need to specify when creating a role?
Security Principal, Role Definition, Scope
Name the different types of Service Principals
User, managed identity, service principal, group
How long are RBAC Activity Logs stored by default?
90 days
What is the workaround for the RBAC activity log storage limitation?
Use Azure Event Hub
How many RBAC Activity Log categories are there?
8
List the RBAC Activity Log categories
Administrative, Service Health, Resource Health, Alert, Autoscale, Recommendation, Security, Policy
What are the 3 methods for achieving Hybrid Identity?
Password Hash Synchronisation (PHS), Pass-through authentication (PTA), Federation
What is PHS?
Password Hash Synchronisation. Sync the hash of the hashed password to Azure
What is PTA?
Pass-through authentication. Use the same password as on-premise. Validates directly with On-premise AD. Password never stored on Azure
What is Federation Hybrid Identity?
Collections of domain trust each other for shared access of resources
What does the acronym SAML stand for?
Security Assertion Markup Language