Protect your data Enable your users Desktop Virtualization Information protection Mobile device & application management Identity and Access Management.

Slides:



Advertisements
Similar presentations
Agenda AD to Windows Azure AD Sync Options Federation Architecture
Advertisements

Core identity scenarios Federation and synchronization 2 3 Identity management overview 1 Additional features 4.
THE MODERN WORKPLACE Navigating IT Complexity in the Modern Workplace Enabling great user experiences with security and control Enable strong authentication.
Azure AD & Office Logon with Username / Password 2. MFA challenge 3. Reply to MFA challenge -1-way or 2-way SMS -Phone call -Mobile Application.
Identity Manager vNext
Microsoft Forefront Identity Manager 2010
Virtual techdays INDIA │ august 2010 Managing Active Directory Using Microsoft Forefront Identity Manager: Amol R Bhandarkar │ Tech Specialist –
Hybrid Reporting in Identity Manager 2016
Microsoft Ignite /16/2017 3:28 PM
Identity management integration options for Office 365
Federated sign-in WS-Federation WS-Trust SAML 2.0 Metadata Shibboleth Graph API Synchronize accounts Authentication.
Sessions about to start – Get your rig on!. Notes from the field – Implement Hybrid Search and OneDrive for Business Chris Zhong - Microsoft Aaron Dinnage.
4/17/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Empower Enterprise Mobility. of employees use personal devices for work purposes.* of employees that typically work on employer premises, also frequently.
Mobility is the new normal 52% of information workers across 17 countries report using three or more devices for work* 52% 90% of enterprises will have.
Windows Server 2012 R2 Capabilities for BYOD Scenario Yuri Diogenes Senior Knowledge Engineer Data Center, Devices & Enterprise Client – CSI Team’s Page:
Cloud app Cloud app Cloud app Separate username/password sign-in Manual or semi-automated provisioning Active Directory App Separate username/password.
SIM205. (On-Premises) Storage Servers Networking O/S Middleware Virtualization Data Applications Runtime You manage Infrastructure (as a Service)
Microsoft Identity and Access Solutions Market Trends and Futures
Empower Enterprise Mobility Jasbir Gill Azure Mobility.
Windows Azure Networking & Active Directory Nasir (Muhammad Nasiruddin) Developer Evangelist - Azure Microsoft Corporation
Matt Steele Senior Program Manager Microsoft Corporation SESSION CODE: SIA326.
Single Sign-On with Microsoft Azure
Windows Azure Conference 2014 Windows Azure AD – All about WAAD & integration with on- premises AD.
…. PrePlanPrepareMigratePost Pre- Deployment PlanPrepareMigrate Post- Deployment First Mailbox.
Tech Ed North America /24/2017 1:59 AM SESSION CODE: SIA327
Microsoft ® Official Course Module 13 Implementing Windows Azure Active Directory.
Empowering people-centric IT Unified device management Access and information protection Desktop Virtualization Hybrid Identity.
Paul Andrew. Recently Announced… Identity Integration Options 2 3 Identity Management Overview 1.
Identity Decision Tree Framework Quick Reference Guides.
Office 365 Directory Synchronization Update: Deploying Password Sync.
Access and Information Protection Product Overview Andrew McMurray Technical Evangelist – Windows
Bronze Sky customer premises AD MS Online Directory Sync Provisioning platform Provisioning platform Lync Online Lync Online SharePoint Online SharePoint.
Get identities to the cloud Mix on-premises and cloud identity for improved PC, mobile, and web productivity Cloud identities help you run your business.
Microsoft Azure Active Directory. AD Microsoft Azure Active Directory.
Access resources in a federation partner organization.
James Lewis and Simon Waight Office 365 security: everywhere you need it to be PRD33 1.
User and Device Management
Craig Pringle & Derek Moir
Identities and Azure AD Premium
Slavko Kukrika MVP Connect Windows 10 to the Cloud – Cloud Join.
Why EMS? What benefit does EMS provide O365 customers Manage Mobile Productivity Increase IT ProductivitySimplify app delivery and deployment LOB Apps.
Agenda  Microsoft Directory Synchronization Tool  Active Directory Federation Server  ADFS Proxy  Hybrid Features – LAB.
Hybrid Identity Deep dive Ross Adams 2016 Redmond Summit | Identity Without Boundaries May 25 th 2016 Azure AD
EMS in action Hugh Simpson-Wells and Mark Riley 2016 Redmond Summit | Identity Without Boundaries
ADFS - Does it Still have a Place? Fitting into the EMS puzzle Frank C. Drewes III 2016 Redmond Summit | Identity.
Private KEEP OFF! Private KEEP OFF! Open! What is a cloud? Cloud computing is a model for enabling convenient, on-demand network access to a shared.
Azure Active Directory Uday Hegde 2016 Redmond Summit | Identity Without Boundaries May 26, 2016 Group Program Manager, Azure AD
Gregor Šuster, Microsoft Azure Active Directory. Kaj je in kaj ni Azure Active Directory (AAD)? Različice storitve Azure Active Directory Predstavitev.
Protect your data Enable your users Desktop Virtualization Information protection Mobile device & application management Identity and Access Management.
Managing Devices in the Enterprise: From EMS zero to Hero in only 60 minutes Ken Goossens Herman Arnedo Mahr.
61% of workers mix personal and work tasks in their devices* * Forrester Research: “BT Futures Report: Info workers will erase boundary between enterprise.
Recording Brief EMS Partner Bootcamp Variables Values Module Title
Today’s challenges Data Users Apps Devices
Active Directory Modernization Technical competitive comparison
Deployment Planning Services
SaaS Application Deep Dive
Microsoft Virtual Academy
9/13/2018 4:54 PM BRK How to get Office 365 to the next level with Azure Active Directory Premium Brjann Brekkan Program Manager Lead – Customer.
Access and Information Protection Product Overview October 2013
Microsoft Ignite NZ October 2016 SKYCITY, Auckland.
Microsoft Virtual Academy
Five mistakes to avoid when deploying Enterprise Mobility + Security
Office 365 Identity Management
AD FS Integration Active Directory Federation Services (AD FS) 7.4
Developing for Windows Azure
System Center Marketing
TechEd /6/ :24 PM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks.
Azure AD Simon May Technical Evangelist.
Microsoft Virtual Academy
Presentation transcript:

Protect your data Enable your users Desktop Virtualization Information protection Mobile device & application management Identity and Access Management

Common identity Single sign-on Self-service experiences Comprehensive security and governance Breadth of applications Desktop Virtualization Information protection Mobile device & application management Identity and Access Management

Active Directory: the vision

A comprehensive IAM solution Active Directory is the primary authentication source today across enterprises Active Directory Federation Services integrates with Azure AD and MFA Web Application Proxy provides at the edge pre- authentication Enforce conditional access to resources Identity Manager Delivers self-service identity management Automates lifecycle management across heterogeneous platforms Provides a rich policy framework for enforcing corporate security policies for identity and access Azure Active Directory Cloud directory Cloud authentication Application integration Azure AD Premium includes Multi-Factor Authentication, self- service features, and user CALs for Identity Manager Windows Server Microsoft Identity Manager

On-premises and private cloud Azure Active Directory Azure AD App Proxy Your apps Microsoft Identity Manager 2016

HR system MIM Manager Active Directory Exchange LDAP Oracle DB Finance New employee Departing employee

HR system MIM Manager Windows Server Active Directory LDAP Oracle DB Finance Exchange Online SharePoint Online Azure SaaS app Microsoft Azure Active Directory Azure AD Sync

RoadmapNext Today

Hybrid Sync Scenario CapabilityMIM SyncAzure AD Sync Azure AD Connect On-premises to on-premises Synchronize identities between many on-premises directories, databases and applications Y On-premises to Azure AD Synchronize identities from on-premises systems to Azure AD Y (Azure AD Connector) Y Azure AD to on-premises Write back of identities, groups and passwords from Azure AD to on-premises AD Y Read more at

FIM Sync AD DS Exchange Oracle DB Finance MIM Sync AD DS Exchange Oracle DB Finance Azure AD Sync Azure AD

User activity reports delivered via System Center Service Manager IAM reporting & auditing in FIM May require separate SQL and System Center Data Warehouse hosts Custom reports possible but requires System Center Data Warehouse familiarity

Activity reports are also being delivered via Azure Portal New MIM reporting in Azure AD

MIM CM Server Contacts MIM CM via REST API (OAuth 2.0 protected) Windows Store application Windows Server 2012 R2 ADFS Contacts AD FS for authentication Installs virtual smartcard into Windows

Prepare Which users have privileged access rights? Protect Lifecycle and AuthN protection Operate Users can request elevation Monitor Add'l auditing, alerts & reports

Modernization Updated platform support Certificate Management updated Self-service account unlock added Privileged Access Mgmt. Improved protection of admins Just In Time (JIT) admin access Auditing for alerts and reports Hybrid IAM Self-service password reset with Azure MFA as a gate Hybrid reporting Azure AD and Office365 integration