Identity and Access Management in Azure

"Identity revolves around who am I ? and how can I prove that I am the one who is claiming to be." 

Proving absolute need of access to the right people is key to success for every organization. Due to the growth of modern workspace and social life, identity management has become more challenging. Every day we deal with multiple identities within a corporate setting and forgetting identities of least recently used has become common. Thanks to "Forget Passport" - Self Service Password Reset features.  

To deal with this situation Microsoft usages its most powerful tools Active Directory - Single Source of Authority for on-premises domain user's and applications, known as On-Premises Identity, Azure Active Directory - Cloud Identity for all cloud-based application and resources and Hybrid Identities- which extends on-premises identities to the Azure Active Directory so that existing users can access cloud-based application using their identities. It enables all the management work on the on-premises active directory making it truly global as well as Central Identities Management.


Best Practices on Managing Identities in Azure

Centralized Identities:
It's the most favourable identity model for the enterprise customer where they have existing single sources of authentication management tools in place such as Active Directory. Active Directory Synchronization tools can be used to take the existing user's to the cloud or implement federated identities so that cloud users will come back to on-premises for the authentication purpose.

Cloud Only Identities: 
The startup company can take the advantages of Cloud Only Identities. It will help them to minimize the on-premises resources footprint and can move forward with operational expenses.

Choosing right Identity Model

Which identity model to adopt is the biggest decision to take and requires an in-depth understanding of the business model that currently they are adopting. Response to the following question might be helpful to take the decision based on the answer.

a. Do you have your presence in the Cloud?
b. How many users are there in your on-premises Active Directory?
c. How many application you are using?
d. Do they require Single Sign-on capabilities?
e. Are you ready to copy hash of the hash to the Cloud?

Comments

  1. Thank you for sharing such a Magnificent post. I found this blog very useful for future references. keep sharing such informative blogs with us. Oracle Fusion Applications Training

    ReplyDelete

Post a Comment

Popular posts from this blog

Deploy Palo Alto in Azure

Demystifying System and User Define Routes of Azure

Azure Private DNS Zone - App Service Environment V2 Step by step - Part 2