Download presentation
Presentation is loading. Please wait.
Published byToby Sullivan Modified over 8 years ago
2
Protect your data Enable your users Desktop Virtualization Information protection Mobile device & application management Identity and Access Management
3
Common identity Single sign-on Self-service experiences Comprehensive security and governance Breadth of applications Desktop Virtualization Information protection Mobile device & application management Identity and Access Management
4
Active Directory: the vision
5
A comprehensive IAM solution Active Directory is the primary authentication source today across enterprises Active Directory Federation Services integrates with Azure AD and MFA Web Application Proxy provides at the edge pre- authentication Enforce conditional access to resources Identity Manager Delivers self-service identity management Automates lifecycle management across heterogeneous platforms Provides a rich policy framework for enforcing corporate security policies for identity and access Azure Active Directory Cloud directory Cloud authentication Application integration Azure AD Premium includes Multi-Factor Authentication, self- service features, and user CALs for Identity Manager Windows Server Microsoft Identity Manager
9
On-premises and private cloud Azure Active Directory Azure AD App Proxy Your apps Microsoft Identity Manager 2016
10
HR system MIM Manager Active Directory Exchange LDAP Oracle DB Finance New employee Departing employee
11
HR system MIM Manager Windows Server Active Directory LDAP Oracle DB Finance Exchange Online SharePoint Online Azure SaaS app Microsoft Azure Active Directory Azure AD Sync
12
RoadmapNext Today
13
Hybrid Sync Scenario CapabilityMIM SyncAzure AD Sync Azure AD Connect On-premises to on-premises Synchronize identities between many on-premises directories, databases and applications Y On-premises to Azure AD Synchronize identities from on-premises systems to Azure AD Y (Azure AD Connector) Y Azure AD to on-premises Write back of identities, groups and passwords from Azure AD to on-premises AD Y Read more at https://msdn.microsoft.com/en-us/library/azure/dn757582.aspx
14
FIM Sync AD DS Exchange Oracle DB Finance MIM Sync AD DS Exchange Oracle DB Finance Azure AD Sync Azure AD
22
User activity reports delivered via System Center Service Manager IAM reporting & auditing in FIM May require separate SQL and System Center Data Warehouse hosts Custom reports possible but requires System Center Data Warehouse familiarity
23
Activity reports are also being delivered via Azure Portal New MIM reporting in Azure AD
27
MIM CM Server Contacts MIM CM via REST API (OAuth 2.0 protected) Windows Store application Windows Server 2012 R2 ADFS Contacts AD FS for authentication Installs virtual smartcard into Windows
31
Prepare Which users have privileged access rights? Protect Lifecycle and AuthN protection Operate Users can request elevation Monitor Add'l auditing, alerts & reports
34
Modernization Updated platform support Certificate Management updated Self-service account unlock added Privileged Access Mgmt. Improved protection of admins Just In Time (JIT) admin access Auditing for alerts and reports Hybrid IAM Self-service password reset with Azure MFA as a gate Hybrid reporting Azure AD and Office365 integration
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.