9. News
• Azure Backup now integrated into VM create experience
• https://azure.microsoft.com/en-us/blog/backup-create-vm-integration/
• Ultimate guide to Windows Server on Azure
• https://blogs.technet.microsoft.com/tip_of_the_day/2018/01/17/tip-of-the-day-ultimate-guide-to-
windows-server-on-azure/
• Azure Essentials
• https://www.microsoft.com/en-us/azureessentials
• PowerShell Core v6.0 -
• https://blogs.msdn.microsoft.com/powershell/2018/01/10/powershell-core-6-0-generally-
available-ga-and-supported/
• Site to Site VPN quick and cheap -
• https://blogs.technet.microsoft.com/dj/2018/01/08/extend-your-network-to-azure-with-site-to-
site-vpn-quick-and-cheap/
11. What is Azure Active Directory?
A comprehensive identity and access
management cloud solution.
It combines directory services, advanced
identity governance, application access
management and a rich standards-based
platform for developers.
Versions:
- Free
- Basic
- Premium
12. Azure AD as the control point
Active Directory
13. Microsoft Azure Active Directory Premium
Pre-integrated for Single Sign On (SSO) to 2,500 popular SaaS apps
Easily add custom cloud-based apps.
Connect to your on-premises Windows Server Active Directory
many apps, one
identity repository
manage identities
and access to cloud
apps
monitor and protect
access to enterprise
apps
enable users
Comprehensive identity and access management console
Centralized management for assigning access to applications with groups
Secure business processes with advanced access management capabilities
Security reporting to track inconsistent access patterns
Included Multi-Factor authentication capabilities
Advanced machine-learning-based reporting
Consistent experience for SSO – the access panel
Tenant branded access panel
Self service password reset
14. ModernTraditional
Any internet
connection
Azure Active
Directory
Advanced Threat
Protection (ATP)
OEM image
Custom corp
image
WSUS
Corpnet
connection
Active Directory and
Azure Active Directory
ConfigMGR
Security
tools
Application
stores
Microsoft Store for
Business
Intune
Windows Update
for Business
15. Directory Comparison
Active Directory
Property On premises Azure
User identity and security
Windows 7 machine join
Windows 8 machine join
Windows 10 machine join
Group Policy
LDAP
DNS
Certificate server
Organisational units
Kerberos
Mobile device joins
Office 365 join
16. Can customers use Microsoft 365 Business with on-premises Active
Directory?
To realize the full value of Windows 10, Windows 10 PCs need to be
joined to Azure Active Directory. Customers may use Microsoft 365
Business with Windows 10 devices joined to on premises Active
Directory, but it is not recommended because they won’t be able to
enforce policies from the Microsoft 365 Business Admin console.
Business is , it's specifically designed to avoid using a traditional
Active Directory and is only available to organisations of up to 300
staff.
19. 1. MS Online IDs
Appropriate for
• Smaller orgs without AD on
-premise
Pros
• No servers required on-pre
mise
Cons
• No SSO
• No 2FA
• 2 sets of credentials to man
age with differing password
policies
• IDs mastered in the cloud
2. MS Online IDs
+ AD Connect
Appropriate for
• Medium/Large orgs with AD
on-premise
Pros
• Users and groups mastered
on-premise
• Enables co-existence
scenarios
Cons
• No SSO
• No 2FA
• 2 sets of credentials to man
age with differing password
policies
• Server deployment required
3. Federated IDs
+ AD Connect
Appropriate for
• Larger enterprise orgs with
AD on-premise
Pros
• SSO with corporate cred
• IDs mastered on-premise
• Password policy controlled
on-premise
• 2FA solutions possible
• Enables co-existence
scenarios
Cons
• High availability server depl
oyments required
Active DirectoryActive Directory
21. Take aways
• Azure AD is not the same as on prem AD
• Azure AD can manage users and modern devices
• Azure AD can be integrated with on premises Domains
• You get a free basic Azure AD with Office 365
• Azure AD Premium plans offer more abilities at a cost
• Azure AD Premium is included in products like EMS and
Microsoft 365 Enterprise
22. Resources
• Azure AD Connect - http://blog.ciaops.com/2015/07/azure-ad-connect-toolthe-basics.html
• Azure AD Core Skills Jumpstart - https://mva.microsoft.com/en-US/training-
courses/azure-active-directory-core-skills-jump-start-8736
• Azure AD Fundamentals Virtual Lab -
https://vlabs.holsystems.com/vlabs/technet?eng=VLabs&auth=external&src=vlabs&altadd=true
&labid=13535
• Enabling your Office 365 Azure AD - http://blog.ciaops.com/2015/01/enabling-your-
office-365-azure-ad.html
• Azure AD Connect tool - the basics - http://blog.ciaops.com/2015/07/azure-ad-
connect-toolthe-basics.html
• Configuring an Azure Single Sign On portal -
http://blog.ciaops.com/2015/02/configuring-azure-sso-portal.html
23. CIAOPS Resources
• Blog – http://blog.ciaops.com
• Free SharePoint Training via email – http://bit.ly/cia-gs-spo
• Free Office 365, Azure Administration newsletter – http://bit.ly/cia-o365-tech
• Free Office 365, Azure video tutorials – http://www.youtube.com/directorciaops
• Free documents, presentations, eBooks – http://slideshare.net/directorcia
• Office 365, Azure, Cloud podcast – http://ciaops.podbean.com
• Office 365, Azure online training courses – http://www.ciaopsacademy.com
• Office 365 and Azure community – http://www.ciaopspatron.com
Twitter
@directorcia
Facebook
https://www.facebook.com/ciaops
Email
director@ciaops.com
Skype for Business
admin@ciaops365.com
24. Get access to the latest
information by becoming a
Patron
http://www.ciaopspatron.com