What’s your Azure AD Recovery Plan?

Slides:



Advertisements
Similar presentations
demo Demo.
Advertisements

Azure on Steroids: Full Automation with PowerShell
Azure File Sync Setup, configuration and management
5/29/2018 1:51 AM THR2071 Managing enterprise applications, permissions, and consent in Azure Active Directory Adam Steenwyk & Jeff Sakowicz Program Managers.
Migrating home folders to OneDrive for Business
Use any Amazon S3 application with Azure Blob Storage
6/5/2018 1:30 PM THR1029 Spend less time managing data and more time with customers: Quick tour of Outlook Customer Manager Welly Lee
Azure Cloud Shell Magic of Modern Command-line Management
6/19/2018 2:57 AM THR3092 Monitor and investigate actions on your user and data with alerts, insights and reports Binyan Chen Program Manager II, Office.
6/25/ :13 PM BRK1076 Make Windows devices more secure by taking them out of your existing infrastructure Chris Rhodes & Andrew Bettany MCTs & MVPs.
6/26/2018 5:24 AM THR1083 Enabling Advanced Security Capabilities: Drive consistent authorization across multiple applications Bryan Bolling Solution Architect,
Get Typed with TypeScript!
Decoding audit events in Microsoft Office 365
Optimizing Microsoft OneDrive for the enterprise
Build data-driven solutions using Microsoft Visio
What a Real, Functioning DevOps Team Looks Like
Microsoft Ignite /18/2018 9:49 PM THR2226
Virtual Machine Diagnostics in Microsoft Azure
Location – the next frontier in analytics
8/6/2018 3:21 AM THR2261 Groups, and Teams and Sites, Oh My! The Ultimate Office 365 Groups Teardown John Peluso SVP Product Strategy, AvePoint Inc. Microsoft.
SQL Server on Linux on All-Flash Arrays
Microsoft Ignite /31/ :08 AM
8/6/ :17 AM THR2214 Hybrid Cloud Activated A customer case study optimizing on-premises & Azure performance and cost Mor Cohen-Tal Senior Product.
Excel and Power BI Better Together Democratization of data
Workflow Orchestration with Adobe I/O
How we got a traditional bank collaborating across boundaries
Find, try and get line-of-business apps on Microsoft AppSource
Automate all things! Microsoft Azure continuous deployment
Data Growth Challenge at WSP USA
Agile Planning with Visual Studio Team Services (VSTS)
Возможности Excel 2010, о которых следует знать
Prevent Costly Data Leaks from Microsoft Office 365
9/22/2018 3:49 AM BRK2247 Learn from MVPs: Panel discussion on all things SharePoint and OneDrive © Microsoft Corporation. All rights reserved. MICROSOFT.
Azure PowerShell Aaron Roney Senior Program Manager Cormac McCarthy
Azure AD Domain Services
Continuous Delivery with Visual Studio Team Services
Azure Advisor: Optimization in the best way
Accelerate Office 365 Adoption Through Microsoft FastTrack Services
Microsoft products for non-profits
Automating security for better, continuous compliance in the cloud
Azure CLI Jason R. Shaver Senior Program Manager
Introduction to ASP.NET Core 1.0
Five cool things you can do with Windows PowerShell on Office 365
What do YOU get from SharePoint Hybrid?
Microsoft To-Do Preview
Securely pass passwords into your deployment
Yammer for IT Tom Kretzmer Solutions Developer, Westinghouse THR1016
Microsoft Exchange: Through the eyes of MVPs (Panel discussion)
MDM Migration Analysis Tool (MMAT)
Overview: Dynamics 365 for Project Service Automation
Understand your Azure cloud assets dependencies with BMC Discovery
Surviving identity management in a hybrid world
Sami Laiho AMA - Ask Me Anything
Breaking Down the Value of A Yammer Post: 20 Things to Do
8/04/2019 9:13 PM © 2006 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered.
Cool Microsoft Edge Tips and Tricks
When Bad Things Happen to Good Applications
Explore PnP Partner Pack for IT pros, admins and architects
Getting the most out of Azure resources with Azure Advisor
“Hey Mom, I’ll Fix Your Computer”
4/21/2019 7:09 AM THR2098 Unlock New Opportunities with Nintex Hawkeye Process Intelligence and Workflow Analytics Sr. Product.
4/28/2019 3:30 AM THR1061 Learn how Dynamics 365, Office 365 and related applications work together to transform the workplace Donna Edwards Solution Architect.
Consolidate, manage, backup, and secure your cloud content
Designing Bots that Fit Your Organization
Ask the Experts: Windows 10 deployment and servicing
Passwordless Service Accounts
Digital Transformation: Putting the Jigsaw Together
WCF and .NET Framework Microservices in Containers
Diagnostics and troubleshooting in Azure App Service Support Center
Optimizing your content for search and discovery
Presentation transcript:

What’s your Azure AD Recovery Plan? 9/13/2018 12:59 PM THR2213 What’s your Azure AD Recovery Plan? Shawny Reiner Strategic Systems Consultant Quest © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

1 4 2 20 Shawny Reiner Grandson  Grown daughters 9/13/2018 12:59 PM Grandson  Shawny Reiner Grown daughters Dogs, but one fur baby! 1 4 2 20 Years in IT! Used to be a customer and joined Quest in 2014. Redesign, restore, redecorate! © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Bad things will happen and you’ll be fine – if you’re prepared. 9/13/2018 12:59 PM Bad things will happen and you’ll be fine – if you’re prepared. © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

9/13/2018 12:59 PM What’s your plan? Key strategies for managing 2 Azure AD recovery scenarios © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

1. Accidental or malicious deletions Brad didn’t know that most Azure AD (AAD) groups can’t be recovered from the recycle bin. Only Office 365 group types are recoverable. Risks With AAD, once a group is deleted, you will not be able to do a simple restore. You must use PowerShell (PoSH). Even with PoSH, you cannot restore security and distro groups You have about 30 days before the Recycle Bin times out You will permanently lose hard deleted objects

3. And… not much more you can do here! 9/13/2018 12:59 PM 3. And… not much more you can do here! 2. Limited restore capabilities and no group membership 1. No UI to restore deleted groups © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Quest On Demand – Easily recovers groups! 9/13/2018 12:59 PM Quest On Demand – Easily recovers groups! Create a solid retention policy: Use Quest On Demand to automate regular backups © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

OOPS! I deleted one of my security groups!

No problem! I can find the object on the difference report and restore!

YAY! It’s restored. Let’s have a look …

Yep, it’s back and so are it’s members! That was easy!

2. Insider or external attack Hank has been causing problems for the last week, and it’s not clear what he has changed or when. Several legitimate changes have also occurred in the environment. Risks You can’t fix what you don’t see Loss of productivity and possible security issues Loss of legitimate changes if you do a full restore or synch from on prem

Difference Report – shows legitimate changes for Alex Wilber 9/13/2018 12:59 PM Difference Report – shows legitimate changes for Alex Wilber © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Hank the Hacker made some unwanted changes! 9/13/2018 12:59 PM Hank the Hacker made some unwanted changes! © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Luckily, with Recovery - we made backups for multiple timeframes 9/13/2018 12:59 PM Luckily, with Recovery - we made backups for multiple timeframes © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

With Difference Report – we can restore just the changes we want! 9/13/2018 12:59 PM With Difference Report – we can restore just the changes we want! © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

And now Alex is restored!

What sets Quest On Demand apart? 9/13/2018 12:59 PM What sets Quest On Demand apart? © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Native vs. Quest On Demand Backup and Recovery Azure AD and Office 365 recovery Azure AD Recycle Bin Restore multiple objects at one time with easy-to-use GUI Yammer accounts B2B accounts Security groups without alias Objects with filters that prevent replication via ADC Office Groups Distribution lists and mail-enabled security groups

Native vs. Quest On Demand Backup and Recovery Azure AD and Office 365 recovery Azure AD Recycle Bin Granular restore user attributes Restore attributes not in recycle bin: select mail settings and MFA Restore hard deleted objects which bypassed the recycle bin Reporting for cloud only objects Difference reporting with restore capability Search and restore capability Reporting for objects synchronized with ADC

What our tech preview customers had to say Microsoft 2016 9/13/2018 12:59 PM What our tech preview customers had to say "Finally, a long awaited product that can take backup of Azure AD with granular restoration features as well as disaster recovery. An excellent companion to Quest RMAD.“ – Directory Services Technologist, from large financial institution “As we migrate our existing customers to the cloud, we can use Quest On Demand to give them peace of mind without another piece of software or hardware needed to install.“  – Law Murphy, Account Executive, Cloud and Disaster Recovery Consultant, Abtech “An excellent companion to Quest RMAD” © 2016 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

We’re just getting started … 9/13/2018 12:59 PM We’re just getting started … © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

9/13/2018 12:59 PM What’s next? On-Premises RMAD and SaaS On Demand Backup and Recovery will work as a seamless, single recovery product! Single dashboard: shows objects in unpacked backup ADC Synch Status: shows full progress on ADC synch Differentiate: between cloud-only and hybrid objects Difference Report: will allow search capabilities GUI based select: will restore items on-prem and in the cloud © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Come to Booth #717 and meet our team! Get drinks, food and a chance to win a cool raffle prize Get expert advice on how to Get a personalized demo of Join our Tech Preview program #STOPHANK !

Please evaluate this session Tech Ready 15 9/13/2018 Please evaluate this session From your Please expand notes window at bottom of slide and read. Then Delete this text box. PC or tablet: visit MyIgnite https://myignite.microsoft.com/evaluations Phone: download and use the Microsoft Ignite mobile app https://aka.ms/ignite.mobileapp Your input is important! © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

9/13/2018 12:59 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.