Manage Azure identities and governance Flashcards
Azure AD
Azure Active Directory
Azure AD: Single sign-on (SSO) access
Users can sign in with the same set of credentials to access all their apps
AAD: Ubiquitous device support
it supports a lot of devices
AAD: secure remote access
Securing remote access for on-premises web apps. Things like MFA, conditional access policies, and group based access management
AAD: cloud extensibility
act as a complete source of data for users, groups, passwords, and access to devices
AAD: sensitive data protection
Admins can monitor for suspicious sign-in activity and potential vulnerabilities
AAD: Self-service support
You can delegate tasks
AAD concept: Identity
An identity is an object that can be authenticated. Could be a user with a username and password. Could also be applications or other servers that require authentication by using secret keys or certificates
AAD concept: Account
An account is an identity that has data associated with it. You need an identity first
AAD concept: AAD account
An AAD account is an identity that’s created through AAD or another microsoft cloud service.
AAD concept: tenant
A single dedicated and trusted instance of Azure AD. Each tenant aka directory represents a single organization
AAD concept: subscription
an azure subscription is used to pay for azure cloud services. a tenant can have multiple subscriptions
What are the four AAD editions?
Free, Microsoft 365 apps, premium p1, and premium p2
What is SSPR
Self Service password reset.
user account: cloud identity
an account with a cloud identity is define only in Azure AD