Top Banner
88

Spunite exploring identity management options in office 365

Jan 28, 2018

Download

Technology

Paul Hunt
Welcome message from author
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
Page 1: Spunite   exploring identity management options in office 365
Page 2: Spunite   exploring identity management options in office 365

Exploring Identity Management options in Office 365

Paul Hunt - MVP

Page 3: Spunite   exploring identity management options in office 365

Who am I?

Page 4: Spunite   exploring identity management options in office 365

Who am I?

Page 5: Spunite   exploring identity management options in office 365

What is this session about?

Page 6: Spunite   exploring identity management options in office 365

Authentication Versus Authorisation

Page 7: Spunite   exploring identity management options in office 365
Page 8: Spunite   exploring identity management options in office 365
Page 9: Spunite   exploring identity management options in office 365

© British Gas

Page 10: Spunite   exploring identity management options in office 365

In the Office 365 Scenario

Trusted Identity

Accounts are stored in Azure Active Directory and authenticated by Microsoft.

Federated Identity

Microsoft detects a federated domain and redirects the user with a claim that needs to be authenticated.

Page 11: Spunite   exploring identity management options in office 365
Page 12: Spunite   exploring identity management options in office 365
Page 13: Spunite   exploring identity management options in office 365
Page 14: Spunite   exploring identity management options in office 365
Page 15: Spunite   exploring identity management options in office 365
Page 16: Spunite   exploring identity management options in office 365
Page 17: Spunite   exploring identity management options in office 365
Page 18: Spunite   exploring identity management options in office 365
Page 19: Spunite   exploring identity management options in office 365
Page 20: Spunite   exploring identity management options in office 365
Page 21: Spunite   exploring identity management options in office 365
Page 22: Spunite   exploring identity management options in office 365
Page 23: Spunite   exploring identity management options in office 365
Page 24: Spunite   exploring identity management options in office 365
Page 25: Spunite   exploring identity management options in office 365
Page 26: Spunite   exploring identity management options in office 365

Common issues

Page 27: Spunite   exploring identity management options in office 365

Outbound Account Sync to Office 365

AAD Connect(Sync Service)

Inbound Password & Attribute Sync to Active

Directory (Optional)

http://bit.ly/installaadc

Page 28: Spunite   exploring identity management options in office 365
Page 29: Spunite   exploring identity management options in office 365
Page 30: Spunite   exploring identity management options in office 365
Page 31: Spunite   exploring identity management options in office 365
Page 32: Spunite   exploring identity management options in office 365
Page 33: Spunite   exploring identity management options in office 365

(PREVIEW!)Docs: http://bit.ly/AADConnectPassthru

Page 34: Spunite   exploring identity management options in office 365
Page 35: Spunite   exploring identity management options in office 365
Page 36: Spunite   exploring identity management options in office 365

AAD Connect(Sync Service)

Page 37: Spunite   exploring identity management options in office 365
Page 38: Spunite   exploring identity management options in office 365

• Skype for Business client applications are not supported (inc 2016)

• Be aware of the Smart Lockout feature and ensure your AD lockout settings are greater than Azure AD.

Page 39: Spunite   exploring identity management options in office 365

Demo – IdFix, AAD Connect & Pass Through Auth

Page 40: Spunite   exploring identity management options in office 365

AD Sync Scheduler

Page 41: Spunite   exploring identity management options in office 365
Page 42: Spunite   exploring identity management options in office 365
Page 43: Spunite   exploring identity management options in office 365

How does federation work?

Page 44: Spunite   exploring identity management options in office 365
Page 45: Spunite   exploring identity management options in office 365
Page 46: Spunite   exploring identity management options in office 365
Page 47: Spunite   exploring identity management options in office 365
Page 48: Spunite   exploring identity management options in office 365
Page 49: Spunite   exploring identity management options in office 365
Page 50: Spunite   exploring identity management options in office 365
Page 51: Spunite   exploring identity management options in office 365
Page 52: Spunite   exploring identity management options in office 365

Demo – ADFS and WAP

Page 53: Spunite   exploring identity management options in office 365
Page 54: Spunite   exploring identity management options in office 365

Password Write-back

Page 55: Spunite   exploring identity management options in office 365

Password Write-back

Page 56: Spunite   exploring identity management options in office 365

Self Service Password Reset

Page 57: Spunite   exploring identity management options in office 365

Demo – Password Write-Back

Page 58: Spunite   exploring identity management options in office 365
Page 59: Spunite   exploring identity management options in office 365
Page 60: Spunite   exploring identity management options in office 365

Direct or Inherited

Page 61: Spunite   exploring identity management options in office 365

Creating a License template for groups

Page 62: Spunite   exploring identity management options in office 365

Creating a License template for groups

Page 63: Spunite   exploring identity management options in office 365
Page 64: Spunite   exploring identity management options in office 365

Migrating from Direct to Inherited

Page 65: Spunite   exploring identity management options in office 365

Pay attention to Assignment Paths!

Page 66: Spunite   exploring identity management options in office 365

Demo – Group Licensing

Page 67: Spunite   exploring identity management options in office 365

Currently expected to be available to E3 and above at General Availability*.

*Subject to confirmation

Page 68: Spunite   exploring identity management options in office 365
Page 69: Spunite   exploring identity management options in office 365
Page 70: Spunite   exploring identity management options in office 365
Page 71: Spunite   exploring identity management options in office 365
Page 72: Spunite   exploring identity management options in office 365
Page 73: Spunite   exploring identity management options in office 365

What is needed?

Page 74: Spunite   exploring identity management options in office 365
Page 75: Spunite   exploring identity management options in office 365

Already logged in?

Log out and choose forget… Or clear your cookies…

Page 76: Spunite   exploring identity management options in office 365

Limitations

Page 77: Spunite   exploring identity management options in office 365
Page 78: Spunite   exploring identity management options in office 365
Page 79: Spunite   exploring identity management options in office 365
Page 80: Spunite   exploring identity management options in office 365
Page 81: Spunite   exploring identity management options in office 365
Page 82: Spunite   exploring identity management options in office 365
Page 83: Spunite   exploring identity management options in office 365

Demo – Sign-in Branding

Page 84: Spunite   exploring identity management options in office 365
Page 85: Spunite   exploring identity management options in office 365

Many options - For Example

http://bit.ly/fedthirdparties

Page 87: Spunite   exploring identity management options in office 365
Page 88: Spunite   exploring identity management options in office 365