“AZURE ACTIVE DIRECTORY”
Jethro Seghers | Program Director | 4/21/2018
TODAY’S AGENDA
0.1
0.2
0.3
0.4
0.5
0.6
YOUR PRESENTER TODAY
Jethro Seghers
Program Director – SkySync
• Responsible for technical evangelism and product
marketing.
• Over 15-years of experience in consulting,
development, marketing, and product management.
• Jethro was an Office 365 MVP for five years.
• He is an internationally recognized author and
speaker for Azure, Office 365 and Cloud Services.
• Twitter: @jseghers - @SkySynced
• jseghers@skysync.com
ENTERPRISE CONTENT CURRENT STATE
Cloud Services Network File Shares Desktops ECM Platforms Bulk Storage Custom Storage LoB Systems
• Compliance Applications
• Governance Applications
• eDiscovery Applications
• Archiving Applications
• Records Rules
• Compliance Applications
• Governance Applications
• eDiscovery Applications
• Compliance Applications
• Governance Applications
• eDiscovery Applications
• Archiving Applications
• Records Rules
• Compliance Applications
• Governance Applications
• eDiscovery Applications
• Compliance Applications
• Governance Applications
• eDiscovery Applications
• Archiving Applications
• Records Rules
• Archiving Applications
• HSM Applications
• Records Rules
CUSTOMER OUTCOMES
• Inconsistent compliance control and rules
• Lots of time and overhead
• No unified visibility
• No universal reporting
SILOES OF CONTENT & CONTROL APPLICATIONS
BUSINESS IMPACT
• Increased software and ongoing costs
• Increased internal support
• Decreased compliance and increased risk of data loss
IT
Employees CustomersBusiness Partners
Devices DataUsers Apps
ORGANIZATIONS’ REALITY
THE CURRENT REALITY…
Self-service Single
sign on
•••••••••••
Username
IDENTITY AS THE CONTROL PLANE
Simple
connection
Cloud
SaaS
Azure
Office 365Public
cloud
Other
Directories
Windows Server
Active Directory
On-premises Microsoft Azure Active Directory
A comprehensive identity and access
management cloud solution for your
employees , partners and customers.
It combines directory services,
advanced identity governance,
application access management and
a rich standards-based platform for
developers.
Empower UsersMonitor and protect
access to cloud
applications.
Your Directory on
the cloud
AZURE ACTIVE DIRECTORY
IDENTITIES: CLOUD IDENTITIES
Identity Synchronization with
password (hash) sync
User attributes are synchronized using Identity
Synchronization services including a password hash,
Authentication is completed against Azure Active Directory
Microsoft Azure
IDENTITIES: FEDERATED IDENTITIES
Identity Synchronization
AD FS
User attributes are synchronized using Identity
Synchronization tools, Authentication is passed back
through federation and completed against Windows Server
Active Directory
Microsoft Azure
IDENTITIES: CLOUD IDENTITIES + PASS THROUGH
Identity Synchronization
Active
Directory
Pass Through
Agent
User attributes are synchronized using Identity
Synchronization tools, Authentication is completed against
Windows Server Active Directory using the Passthrough
Agent
Microsoft Azure
IDENTITIES: CLOUD IDENTITIES + PASS THROUGH
RESOURCES
Follow @SkySynced - @jseghers
For questions email jseghers@skysync.com
Website www.skysync.com – www.jethroseghers.com
Office 365 Secure Score eBook: bit.ly/O365SecureScore
Q&A AND THANK YOU

Azure Active Directory

  • 1.
    “AZURE ACTIVE DIRECTORY” JethroSeghers | Program Director | 4/21/2018
  • 2.
  • 3.
    YOUR PRESENTER TODAY JethroSeghers Program Director – SkySync • Responsible for technical evangelism and product marketing. • Over 15-years of experience in consulting, development, marketing, and product management. • Jethro was an Office 365 MVP for five years. • He is an internationally recognized author and speaker for Azure, Office 365 and Cloud Services. • Twitter: @jseghers - @SkySynced • jseghers@skysync.com
  • 4.
    ENTERPRISE CONTENT CURRENTSTATE Cloud Services Network File Shares Desktops ECM Platforms Bulk Storage Custom Storage LoB Systems • Compliance Applications • Governance Applications • eDiscovery Applications • Archiving Applications • Records Rules • Compliance Applications • Governance Applications • eDiscovery Applications • Compliance Applications • Governance Applications • eDiscovery Applications • Archiving Applications • Records Rules • Compliance Applications • Governance Applications • eDiscovery Applications • Compliance Applications • Governance Applications • eDiscovery Applications • Archiving Applications • Records Rules • Archiving Applications • HSM Applications • Records Rules CUSTOMER OUTCOMES • Inconsistent compliance control and rules • Lots of time and overhead • No unified visibility • No universal reporting SILOES OF CONTENT & CONTROL APPLICATIONS BUSINESS IMPACT • Increased software and ongoing costs • Increased internal support • Decreased compliance and increased risk of data loss
  • 5.
    IT Employees CustomersBusiness Partners DevicesDataUsers Apps ORGANIZATIONS’ REALITY
  • 6.
  • 7.
    Self-service Single sign on ••••••••••• Username IDENTITYAS THE CONTROL PLANE Simple connection Cloud SaaS Azure Office 365Public cloud Other Directories Windows Server Active Directory On-premises Microsoft Azure Active Directory
  • 8.
    A comprehensive identityand access management cloud solution for your employees , partners and customers. It combines directory services, advanced identity governance, application access management and a rich standards-based platform for developers.
  • 9.
    Empower UsersMonitor andprotect access to cloud applications. Your Directory on the cloud AZURE ACTIVE DIRECTORY
  • 10.
    IDENTITIES: CLOUD IDENTITIES IdentitySynchronization with password (hash) sync User attributes are synchronized using Identity Synchronization services including a password hash, Authentication is completed against Azure Active Directory Microsoft Azure
  • 11.
    IDENTITIES: FEDERATED IDENTITIES IdentitySynchronization AD FS User attributes are synchronized using Identity Synchronization tools, Authentication is passed back through federation and completed against Windows Server Active Directory Microsoft Azure
  • 12.
    IDENTITIES: CLOUD IDENTITIES+ PASS THROUGH Identity Synchronization Active Directory Pass Through Agent User attributes are synchronized using Identity Synchronization tools, Authentication is completed against Windows Server Active Directory using the Passthrough Agent Microsoft Azure
  • 13.
  • 14.
    RESOURCES Follow @SkySynced -@jseghers For questions email jseghers@skysync.com Website www.skysync.com – www.jethroseghers.com Office 365 Secure Score eBook: bit.ly/O365SecureScore
  • 15.

Editor's Notes

  • #8 Microsoft has a solution for this [Click] Traditional identity and access management solutions providing sing-sign on to on-premises applications and directory services such as Active Directory and others are used from the vast majority of organizations and huge investments were made to deploy and maintain them. These solutions are perfect for the on-premises world. [Click] Now, as we have discussed, there are new pressing requirements to provide the same experience to cloud applications hosted in any public cloud. [Click] Azure Active Directory can be the solution to this new challenge by extending the reach of on-premises identities to the cloud in a secure and efficient way. [Click] In order to do that, one simple connection is needed from on-premises directories to Azure AD. [Click] and everything else will be handled by Azure AD. Secure single sign-on to thousands of SaaS applications hosted in any cloud by using the same credentials that exist on-premises [Click] And we don’t forget the users. Azure AD provides Self-service capabilities and easy access to all the application, consumer or business, they need. in the cloud but on-premises too (Application Proxy)