build 2016 - p494 - windows 10 identity overview

23
#Build2016 Windows 10 Identity Overview Karanbir Singh Senior Program Manager

Upload: windows-developer

Post on 15-Apr-2017

333 views

Category:

Technology


0 download

TRANSCRIPT

Page 1: Build 2016 - P494 - Windows 10 Identity Overview

#Build2016

Windows 10 Identity OverviewKaranbir SinghSenior Program Manager

Page 2: Build 2016 - P494 - Windows 10 Identity Overview
Page 3: Build 2016 - P494 - Windows 10 Identity Overview

of employees use personal devices for work purposes.*

of employees that typically work on employer premises, also frequently work away from their desks.***

of all software will be available on a SaaS delivery by 2020.**

Mobility and the cloud is the new normal

66% 25% 33%

*CEB The Future of Corporate ITL: 203-2017. 2013.**Forrester Application Adoption Trends: The Rise Of SaaS***CEB IT Impact Report: Five Key Findings on Driving Employee Productivity Q1 2014.

Page 4: Build 2016 - P494 - Windows 10 Identity Overview

Identity Mental Model

Purpose

Ownership

Windows DevicesPCs/Tablets/Mobile/etc.

Personal

FunFun + some

work(BYOD)

Organizational

Work

Page 5: Build 2016 - P494 - Windows 10 Identity Overview

Identity Mental Model

Purpose

Ownership

Windows DevicesPCs/Tablets/Mobile/etc.

Personal

FunFun + some

work(BYOD)

Organizational

Work

Page 6: Build 2016 - P494 - Windows 10 Identity Overview

Self-service setup & sign in with Azure AD accountIdeal for users who primarily access Office365 & Cloud appsAutomatic enrollment to MDMAlso available on Windows Phone 10!

Domain Join only better: Connected to Azure ADGreat for hybrid orgs with deployment processes in-placeUse of existing on-premises management solutions

Domain Join

Azure AD Join

Org owned devices – Two models

Page 7: Build 2016 - P494 - Windows 10 Identity Overview

Self-service setup & sign in with Azure AD accountIdeal for users who primarily access Office365 & Cloud appsAutomatic enrollment to MDM

Add a Work Account

Personally owned devices – One model

Page 8: Build 2016 - P494 - Windows 10 Identity Overview

Identity Mental Model

Windows 10 Configuration

Purpose

Ownership

Windows DevicesPC/Tablets/Mobile/etc.

Personal

Fun

MSA Sign-in

Fun + some work(BYOD)

Add a Work Account

Organizational

Work

Domain Join Azure AD Join

Page 9: Build 2016 - P494 - Windows 10 Identity Overview

Requirement Domain Join Azure AD Join Add a Work Account

Ownership Organization Organization Personal

Provisioning Prepared by IT Self configure in OOBE Self configure in Settings>>Accounts

Management Existing management solutions (e.g. SCCM, GP, etc.)

MDM MDM

Resources SSO to enterprise resources hosted on-premises and in the cloud

SSO to enterprise resources in the cloud, and to on-premises resources exposed via Proxy

SSO to enterprise resources in the cloud.

Deployment Traditional work place Seasonal workers, CYOD BYOD

Devices PCs and Tablets PCs, Tablets, and Windows Phone PCs, Tablets, and Windows Phone

Windows for Work

Page 10: Build 2016 - P494 - Windows 10 Identity Overview

Identity is a means to an end, not the end.

Empowering every individual in your organization to achieve more is…

Page 11: Build 2016 - P494 - Windows 10 Identity Overview

Web Account Manager

Page 12: Build 2016 - P494 - Windows 10 Identity Overview

Web Account Manager is extensible.

Page 13: Build 2016 - P494 - Windows 10 Identity Overview
Page 14: Build 2016 - P494 - Windows 10 Identity Overview

Identity Mental Model

SSO

Windows 10 Configuration

Purpose

Ownership

Windows DevicesPC/Tablets/Mobile/etc.

Personal

Fun

MSA Sign-in

Fun + some work(BYOD)

Add a Work Account

Organizational

Work

Domain Join Azure AD Join

Web Account Manager

Page 15: Build 2016 - P494 - Windows 10 Identity Overview

Microsoft Passport & Windows Hello

Page 16: Build 2016 - P494 - Windows 10 Identity Overview

Password theft is an epidemicPass the hash attacks are no longer hypotheticalShared secrets are easily breached, stolen, or phishedAlternatives come with usability and/or operational costs

Reality

Page 17: Build 2016 - P494 - Windows 10 Identity Overview

Key based authentication system built into Windows 10Users create a gesture to use their PassportTPM protects a private key used to sign auth requestsEliminates the need to authenticate using a password

Microsoft Passport

Page 18: Build 2016 - P494 - Windows 10 Identity Overview

Identity Mental Model

Authentication

Windows 10 Configuration

Purpose

Ownership

Windows DevicesPC/Tablets/Mobile/etc.

Personal

Fun

MSA Sign-in

Fun + some work(BYOD)

Add a Work Account

Organizational

Work

Domain Join Azure AD Join

Web Account Manager

Microsoft Passport + Windows Hello

Page 19: Build 2016 - P494 - Windows 10 Identity Overview

SummaryWindows for Work (IT admins)

- Domain Join- Azure AD Join- Add work account

Web Account Manager (Developers)- One stop shop for authentication

Microsoft Passport & Windows Hello (IT admins + Developers)- Say bye to passwords!

Page 23: Build 2016 - P494 - Windows 10 Identity Overview

© 2015 Microsoft Corporation. All rights reserved.