Benutzer:MovGP0/Azure/AD

aus Wikipedia, der freien Enzyklopädie
Zur Navigation springen Zur Suche springen
   MovGP0        Über mich        Hilfen        Artikel        Weblinks        Literatur        Zitate        Notizen        Programmierung        MSCert        Physik      


Azure Active Directory

[Bearbeiten | Quelltext bearbeiten]
Free
  • User Account management
  • Sync with on-promises AD
  • SSO with Intune and Office 365
Basic
  • Group based access management
  • Self service password reset
  • Azure AD application proxy
  • Support for multiple directories which are
    • resource independent
    • administrator independent
    • syncronization independent
  • global administrators can delete directory if the directory contains
    • no users
    • no applications
Premium
  • self service group management
  • advanced security reports and alerts
  • multi-factor auth.
  • Microsoft Identity Manager use rights
  • Password reset with write-back to on-premise
  • Azure Active Directory Connect Health
  • Create Azure network
  • Configure a site-to-Azure VPN
  • Configure a static IP address on the configured Azure network
  • Deploy a Windows Server VM on Azure
  • Promote to Domain Controller

Azure AD Connect

[Bearbeiten | Quelltext bearbeiten]
  • replaces DirSync and AAD Sync
  • synchronization with multiple AD forests
  • requires Global Administrator credentials to connect

Azure AD Domain Services

[Bearbeiten | Quelltext bearbeiten]
  • to be used with Applications and Virtual Machines
  • replaces Azure Iaas DC VM
  • supports for specified VMs on Azure Network:
    • custom schema extensions
    • Domain Join
    • LDAP
    • Kerberos
    • NTLM with Group Policy Objects (GPOs)
    • DNS Server for Azure Virtual Network
    • Azure AD Connect
  • must be enabled for the AD Directory
  • must be connected to an Azure Virtual Network
  • configure DNS-Name and IP to act as DNS on the Virtual Network
  • when VM is created on the Virtual Network it can connect to the AD/DNS
    • login with remote connection into the VM and connect to domain