8/1/2018 11:13 PM BRK2276 Azure Active Directory B2C: Modernize your customer identity management Saeed Akhter Senior Program Manager © Microsoft Corporation.

Slides:



Advertisements
Similar presentations
customer.
Advertisements

A lap around Azure Active Directory Business to Consumer (B2C)
5/21/2018 9:40 PM BRK3021 Learn about modern infrastructure roles in RDS: Next generation Windows desktop & app virtualization Clark Nicholson - Principal.
Azure on Steroids: Full Automation with PowerShell
Azure File Sync Setup, configuration and management
How To Deliver Apps Faster And Secure Them The Microsoft Way
6/10/2018 5:07 PM THR2218 Deploying Windows Defender AV and more with Intune and Configuration Manager Amitai Senior Program Manager,
Azure Cloud Shell Magic of Modern Command-line Management
Developing Hybrid Apps on Microsoft Azure Stack
Windows 10 and the cloud: Why the future needs hybrid solutions
Azure SDKs and Tools for You
6/25/ :13 PM BRK1076 Make Windows devices more secure by taking them out of your existing infrastructure Chris Rhodes & Andrew Bettany MCTs & MVPs.
Do more with Microsoft Word and Office 365
Optimizing Microsoft OneDrive for the enterprise
The power of common identity across any cloud
SQL Server on Linux on All-Flash Arrays
Microsoft Ignite /31/ :08 AM
Microsoft Planner: How to manage your team’s work in Office 365
Excel and Power BI Better Together Democratization of data
Workflow Orchestration with Adobe I/O
How we got a traditional bank collaborating across boundaries
Find, try and get line-of-business apps on Microsoft AppSource
Automate all things! Microsoft Azure continuous deployment
Data Growth Challenge at WSP USA
Microsoft Teams Mobile Collaboration on the go
9/14/ :46 AM BRK3293 How the Portland Trail Blazers Use Personalization and Acxiom Data to Target Customers Chris Hoder Program Manager, AI + Research.
Using AAD B2C for WordPress & Secure Deployment Scenario
Modern Front-End Web Development with Visual Studio
9/22/2018 3:49 AM BRK2247 Learn from MVPs: Panel discussion on all things SharePoint and OneDrive © Microsoft Corporation. All rights reserved. MICROSOFT.
Azure PowerShell Aaron Roney Senior Program Manager Cormac McCarthy
Continuous Delivery for Microsoft Azure
Azure Active Directory
11/14/ :30 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN.
11/15/ :59 AM THR2294 Building great looking experiences with Microsoft Graph and Office UI Fabric Ben Summers Office Marketing David Lavenda Harmon.ie.
11/22/2018 1:43 PM THR3005 How to provide business insight from your data using Azure Analysis Services Peter Myers Bitwise Solutions © Microsoft Corporation.
Azure Advisor: Optimization in the best way
Mobile Center and VSTS:​ Better together for your Mobile DevOps
12/5/2018 2:50 AM How to secure your front door with real-time risk assessments of your logons Jan Ketil Skanke COO and Principal Cloud Architect CloudWay.
Microsoft Virtual Academy
Microsoft products for non-profits
Power-up NoSQL with Azure Cosmos DB
Automating security for better, continuous compliance in the cloud
Azure CLI Jason R. Shaver Senior Program Manager
Introduction to ASP.NET Core 1.0
Five cool things you can do with Windows PowerShell on Office 365
Microsoft To-Do Preview
Securely pass passwords into your deployment
Microsoft Exchange: Through the eyes of MVPs (Panel discussion)
MDM Migration Analysis Tool (MMAT)
Overview: Dynamics 365 for Project Service Automation
Understand your Azure cloud assets dependencies with BMC Discovery
Surviving identity management in a hybrid world
Sami Laiho AMA - Ask Me Anything
Breaking Down the Value of A Yammer Post: 20 Things to Do
Cool Microsoft Edge Tips and Tricks
When Bad Things Happen to Good Applications
Getting the most out of Azure resources with Azure Advisor
4/16/2019 4:15 PM How Microsoft does IT: How Microsoft IT is embracing modern to build SharePoint experiences Sam Crewdson Senior Program Manager Rene.
Manage your App Service resources using Command line tools
“Hey Mom, I’ll Fix Your Computer”
4/21/2019 7:09 AM THR2098 Unlock New Opportunities with Nintex Hawkeye Process Intelligence and Workflow Analytics Sr. Product.
Consolidate, manage, backup, and secure your cloud content
Designing Bots that Fit Your Organization
Ask the Experts: Windows 10 deployment and servicing
Passwordless Service Accounts
Azure Networking inside and out
Digital Transformation: Putting the Jigsaw Together
WCF and .NET Framework Microservices in Containers
Diagnostics and troubleshooting in Azure App Service Support Center
Optimizing your content for search and discovery
Presentation transcript:

8/1/2018 11:13 PM BRK2276 Azure Active Directory B2C: Modernize your customer identity management Saeed Akhter Senior Program Manager © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

How can businesses securely connect with their customers? 8/1/2018 11:13 PM How can businesses securely connect with their customers? © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Azure Active Directory B2C Azure AD B2C Social IDs Business & Government IDs contoso Customers Apps Analytics CRM and Marketing Automation Business Securely authenticate customers with their preferred identity provider Provide branded registration and login experiences Capture login, preference, and conversion data for customers

Enterprises rely on Azure Active Directory Built on the same proven platform used by Office 365 and Azure AD 12.8 M Organizations (+30% YoY) 950M Users (+45% YoY) 60 B Authentications per month 56 K paid Azure AD / EMS customers (+74% YoY) 90 % of Fortune 500 companies use Azure AD © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

8/1/2018 11:13 PM Improve your connection with customers A customer identity and access management system needs to be: Customer-centric and flexible Secure and reliable Ready for every business © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Customer-centric and flexible Customers can use social IDs Works with any device and OS Customize every pixel White-label: Use your brand Native support for 36 languages

Secure and reliable Protect customer identities Additional security layers (MFA) 99.9% availability SLA Massively-scalable Secure and reliable

Ready for every business Scale: 100s of millions of users Faster speed to market Import or integrate user stores Integrate CRM and marketing Flexible policy framework Ready for every business

Ready for every business Build apps quickly using built-in templates Social accounts Custom attributes Customize with HTML and CSS Multifactor authentication  </> Built-in Policy Ready-to-go templates for Sign-up, Sign-in, Edit Profile, Reset Password. Reach any user. Existing social account or create a local account. Pixel-perfect control. Your brand, your HTML and CSS.

Demo: Sign in any user Configure ready-to-go templates in Azure Portal 8/1/2018 11:13 PM Demo: Sign in any user Configure ready-to-go templates in Azure Portal © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

8/1/2018 11:13 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Ready for every business Build complex apps with custom policy User journeys Open standards Optimize Conversion Conditional branching User migration Connect with REST Custom Policy Tailor every step of the user journey Integrate with existing infrastructure Connect to or migrate from your existing user stores

8/1/2018 11:13 PM Demo: Enterprise Identities Authenticate users from Azure Active Directory © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Custom Policy – OpenID Connect Provider 8/1/2018 11:13 PM Custom Policy – OpenID Connect Provider <ClaimsProvider> <Domain>Contoso</Domain> <DisplayName>Login using Contoso</DisplayName> <TechnicalProfiles> <TechnicalProfile Id="ContosoProfile"> <DisplayName>Contoso Employee</DisplayName> <Protocol Name="OpenIdConnect"/> <OutputTokenFormat>JWT</OutputTokenFormat> <Metadata> <Item Key="METADATA">…/.well-known/openid-configuration</Item> <Item Key="ProviderName">https://sts.windows.net/[GUID]/</Item> <Item Key="client_id">[GUID]</Item> <Item Key="IdTokenAudience">[GUID]</Item> <Item Key="response_types">id_token</Item> <Item Key="UsePolicyInRedirectUri">false</Item> </Metadata> <CryptographicKeys>…</CryptographicKeys> <OutputClaims>…</OutputClaims> <OutputClaimsTransformations>…</OutputClaimsTransformations> </TechnicalProfile> </TechnicalProfiles> </ClaimsProvider> © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

8/1/2018 11:13 PM Demo: Welcome Email Extensibility and power of the Identity Experience Framework © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Custom Policy – Orchestration Steps <!-- reads the user, identified by the object identifier for the user --> <OrchestrationStep Order="3" Type="ClaimsExchange"> <ClaimsExchanges> <ClaimsExchange Id="AzureADReadUserByObjectIdExchange" TechnicalProfileReferenceId="AzureADStore-ReadUserByObjectId" /> </ClaimsExchanges> ... <!– send a welcome email after registering --> <OrchestrationStep Order="5" Type="ClaimsExchange"> <ClaimsExchange Id="AzureFunctionsSendMailWebHookExchange" TechnicalProfileReferenceId="AzureFunctions-SendMailWebHook" /> </OrchestrationStep>

Step #3 – Read User from Directory <TechnicalProfile Id="AzureADStore-ReadUserByObjectId"> <Metadata> <Item Key="Operation">Read</Item> <Item Key="RaiseErrorIfClaimsPrincipalDoesNotExist">true</Item> <Item Key="UserMessageIfClaimsPrincipalDoesNotExist">User does not exist. You must sign up before you can sign in.</Item> </Metadata> <InputClaims> <InputClaim ClaimTypeReferenceId="objectId" Required="true" /> </InputClaims> <OutputClaims> <OutputClaim ClaimTypeReferenceId="displayName" /> <OutputClaim ClaimTypeReferenceId="email" PartnerClaimType="signInNames.emailAddress" /> <OutputClaim ClaimTypeReferenceId="extension_Brand" /> ...

Step #5 – Send welcome email 8/1/2018 11:13 PM Step #5 – Send welcome email <TechnicalProfile Id="AzureFunctions-SendMailWebHook"> <DisplayName>Send Mail Web Hook Azure Function</DisplayName> <Protocol Name="Proprietary" Handler="Web.TPEngine.Providers.RestfulProvider, …" /> <Metadata> <Item Key="ServiceUrl"> https://wingtipb2cfuncs.azurewebsites.net/api/SendMailWebHook… </Item> <Item Key="AuthenticationType">None</Item> <Item Key="SendClaimsIn">Body</Item> </Metadata> <InputClaimsTransformations> <InputClaimsTransformation ReferenceId="CreateFromMailAddress" /> </InputClaimsTransformations> <InputClaims> <InputClaim ClaimTypeReferenceId="fromMailAddress" PartnerClaimType="fromAddress" /> <InputClaim ClaimTypeReferenceId="email" PartnerClaimType="toAddress" /> <InputClaim ClaimTypeReferenceId="extension_Brand“ PartnerClaimType="brand" /> <InputClaim ClaimTypeReferenceId="displayName" /> </InputClaims> <UseTechnicalProfileForSessionManagement ReferenceId="SSOSession-Noop" /> </TechnicalProfile> © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

‟ State of Indiana creates a one-stop government portal By Diego Delso, CC BY-SA 3.0, https://commons.wikimedia.org/w/index.php?curid=22848980 8/1/2018 11:13 PM By derivative work: Massimo Catarinella - Image:Indiana_State_Capitol_rect_pano.jpg, CC BY-SA 3.0, https://commons.wikimedia.org/w/index.php?curid=4885470 State of Indiana creates a one-stop government portal ‟ With B2C we have the ability for our Indiana residents to create a secure, easy to use and highly available ID that will allow them to safely do business with the State. Our initial deployment of B2C with the Indiana Secretary of State’s Inbiz application has been an overwhelming success allowing Indiana to generate new revenue from day 1 of go-live” — Bryan Long, Cloud Architect, Indiana Office of Technology https://customers.microsoft.com/en-us/story/indianaofficeoftechnology © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

‟ Real Madrid brings the stadium closer to 450 million fans 8/1/2018 11:13 PM Real Madrid brings the stadium closer to 450 million fans ‟ Azure Active Directory B2C helps us bring the stadium closer to our 450 million fans around the globe with simplified registration and login through social accounts like Facebook, or traditional username/passwords login.” — Rafael De Los Santos, Head of Digital, Real Madrid © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Next steps Try it today, get started here: aka.ms/aadb2c Ask a question: stackoverflow.com/questions/tagged/azure-ad-b2c

Please evaluate this session Tech Ready 15 8/1/2018 Please evaluate this session From your Please expand notes window at bottom of slide and read. Then Delete this text box. PC or tablet: visit MyIgnite https://myignite.microsoft.com/evaluations Phone: download and use the Microsoft Ignite mobile app https://aka.ms/ignite.mobileapp Your input is important! © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

8/1/2018 11:13 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.