This document summarizes Microsoft Azure Active Directory's support for OpenID Connect. Key points include: - Azure AD can function as an identity provider supporting protocols like SAML, WS-Federation, and OpenID Connect. - It also functions as an authorization server, allowing applications to register as protected resources. - OpenID Connect support in Azure AD allows using the authorization code flow and retrieving tokens to call APIs on behalf of signed-in users. - The document provides an example workflow using OWIN middleware and notifications in an ASP.NET MVC application.