Describe the function and identity types of Microsoft Entra ID Flashcards
what was Microsoft Entra ID formerly known as?
Azure Active Directory
Microsoft Entra ID
cloud based identity and access management service
why do organizations use Microsoft Entra ID?
to enable their employees, guests, and others to sign in and access the resources they need
Individuals who use Microsoft Entra ID can access what resources?
Internal - apps on your corporate network and intranet, and cloud apps developed by your own organization.
External - Microsoft Office 365, the Azure portal, and any SaaS applications used by your organization
t or f
Microsoft Entra ID can be synchronized with your existing on-premises Active Directory, synchronized with other directory services, or used as a standalone service
true
can you use personal devices with Microsoft Entra ID?
yes, it allows organizations to securely enable the use of personal devices
Identity Secure Score
a percentage that functions as an indicator for how aligned you are with Microsoft’s best practice recommendations for security
t or f
Each improvement action in identity secure score is tailored to your specific configuration.
true
t or f
Identity secure score, which is available in all editions of Microsoft Entra ID
true
Helps you to objectively measure your identity security posture, plan identity security improvements, and review the success of your improvements
Identity secure score
Tenant
information about a single organization resides including organizational objects such as users, groups, devices, and application registrations
contains access and compliance policies for resources, such as applications registered in the directory.
Each Microsoft Entra tenant has a unique ID (tenant ID) and a domain name (for example, contoso.onmicrosoft.com) and serves as a security and administrative boundary, allowing the organization to manage and control access to resources, applications, devices, and services
Directory
logical container within a Microsoft Entra tenant that holds and organizes the various resources and objects related to identity and access management including users, groups, applications, devices, and other directory objects
the directory is like a database or catalog of identities and resources associated with an organization’s tenant
Multi-tenant
more than one instance of Microsoft Entra ID
Why do IT admins Microsoft Entra ID?
IT admins to control access to corporate apps and resources, based on business requirements
Why do developers use Microsoft Entra ID?
as a standards-based approach for adding single sign-on (SSO) to their apps, so that users can sign in with their pre-existing credentials.
Microsoft Entra ID also provides application programming interfaces (APIs) that allow developers to build personalized app experiences using existing organizational data.
Who uses Microsoft Entra ID?
IT admins
developers
Subscribers
t or f
Subscribers to Azure services, Microsoft 365, or Dynamics 365 automatically have access to Microsoft Entra ID
true
How many directories does a Microsoft Entra tenant consist of?
One
Why would an organization have multiple tenants?
an organization has multiple subsidiaries or business units that operate independently, organizations that merge or acquire companies, multiple geographical boundaries with various residency regulations, and more.
Types of identities in Microsoft Entra ID
user identities
workload identities
device identities
external identities
hybrid identities
What are the three categories of which you can assign an identity to in Microsoft Entra ID?
humans
devices
software-based object- applications, VMs, services, containers
User identities
represent people - employees and external users ( customers, consultants, vendors, partners)
In Microsoft Entra ID, user identities are characterized by
how they authenticate and the user type property
Workload Identities
Containers
VM
Application
Services
Device Identities
mobile device
IoT/OT device
Desktop computers
t or f
How the user authenticates is asked relative to the host organization’s Microsoft Entra tenant and can be internal or external
true
Internal authentication
user has an account on the host organization’s Microsoft Entra ID and uses that account to authenticate to Microsoft Entra ID
External authentication
user authenticates using an external Microsoft Entra account that belongs to another organization, a social network identity, or other external identity provider
by default, what types of privileges do guest have
limited
external guest
uses an external Microsoft Entra ID account, social identity, or other external identity provider to sign in
most external users fall into this catagory
external member
uses an external account to authenticate but has member level access in your organization
common scenario in multi tenant organizations