spunite exploring identity management options in office 365

88

Upload: paul-hunt

Post on 28-Jan-2018

1.516 views

Category:

Technology


0 download

TRANSCRIPT

Page 1: Spunite   exploring identity management options in office 365
Page 2: Spunite   exploring identity management options in office 365

Exploring Identity Management options in Office 365

Paul Hunt - MVP

Page 3: Spunite   exploring identity management options in office 365

Who am I?

Page 4: Spunite   exploring identity management options in office 365

Who am I?

Page 5: Spunite   exploring identity management options in office 365

What is this session about?

Page 6: Spunite   exploring identity management options in office 365

Authentication Versus Authorisation

Page 7: Spunite   exploring identity management options in office 365
Page 8: Spunite   exploring identity management options in office 365
Page 9: Spunite   exploring identity management options in office 365

© British Gas

Page 10: Spunite   exploring identity management options in office 365

In the Office 365 Scenario

Trusted Identity

Accounts are stored in Azure Active Directory and authenticated by Microsoft.

Federated Identity

Microsoft detects a federated domain and redirects the user with a claim that needs to be authenticated.

Page 11: Spunite   exploring identity management options in office 365
Page 12: Spunite   exploring identity management options in office 365
Page 13: Spunite   exploring identity management options in office 365
Page 14: Spunite   exploring identity management options in office 365
Page 15: Spunite   exploring identity management options in office 365
Page 16: Spunite   exploring identity management options in office 365
Page 17: Spunite   exploring identity management options in office 365
Page 18: Spunite   exploring identity management options in office 365
Page 19: Spunite   exploring identity management options in office 365
Page 20: Spunite   exploring identity management options in office 365
Page 21: Spunite   exploring identity management options in office 365
Page 22: Spunite   exploring identity management options in office 365
Page 23: Spunite   exploring identity management options in office 365
Page 24: Spunite   exploring identity management options in office 365
Page 25: Spunite   exploring identity management options in office 365
Page 26: Spunite   exploring identity management options in office 365

Common issues

Page 27: Spunite   exploring identity management options in office 365

Outbound Account Sync to Office 365

AAD Connect(Sync Service)

Inbound Password & Attribute Sync to Active

Directory (Optional)

http://bit.ly/installaadc

Page 28: Spunite   exploring identity management options in office 365
Page 29: Spunite   exploring identity management options in office 365
Page 30: Spunite   exploring identity management options in office 365
Page 31: Spunite   exploring identity management options in office 365
Page 32: Spunite   exploring identity management options in office 365
Page 33: Spunite   exploring identity management options in office 365

(PREVIEW!)Docs: http://bit.ly/AADConnectPassthru

Page 34: Spunite   exploring identity management options in office 365
Page 35: Spunite   exploring identity management options in office 365
Page 36: Spunite   exploring identity management options in office 365

AAD Connect(Sync Service)

Page 37: Spunite   exploring identity management options in office 365
Page 38: Spunite   exploring identity management options in office 365

• Skype for Business client applications are not supported (inc 2016)

• Be aware of the Smart Lockout feature and ensure your AD lockout settings are greater than Azure AD.

Page 39: Spunite   exploring identity management options in office 365

Demo – IdFix, AAD Connect & Pass Through Auth

Page 40: Spunite   exploring identity management options in office 365

AD Sync Scheduler

Page 41: Spunite   exploring identity management options in office 365
Page 42: Spunite   exploring identity management options in office 365
Page 43: Spunite   exploring identity management options in office 365

How does federation work?

Page 44: Spunite   exploring identity management options in office 365
Page 45: Spunite   exploring identity management options in office 365
Page 46: Spunite   exploring identity management options in office 365
Page 47: Spunite   exploring identity management options in office 365
Page 48: Spunite   exploring identity management options in office 365
Page 49: Spunite   exploring identity management options in office 365
Page 50: Spunite   exploring identity management options in office 365
Page 51: Spunite   exploring identity management options in office 365
Page 52: Spunite   exploring identity management options in office 365

Demo – ADFS and WAP

Page 53: Spunite   exploring identity management options in office 365
Page 54: Spunite   exploring identity management options in office 365

Password Write-back

Page 55: Spunite   exploring identity management options in office 365

Password Write-back

Page 56: Spunite   exploring identity management options in office 365

Self Service Password Reset

Page 57: Spunite   exploring identity management options in office 365

Demo – Password Write-Back

Page 58: Spunite   exploring identity management options in office 365
Page 59: Spunite   exploring identity management options in office 365
Page 60: Spunite   exploring identity management options in office 365

Direct or Inherited

Page 61: Spunite   exploring identity management options in office 365

Creating a License template for groups

Page 62: Spunite   exploring identity management options in office 365

Creating a License template for groups

Page 63: Spunite   exploring identity management options in office 365
Page 64: Spunite   exploring identity management options in office 365

Migrating from Direct to Inherited

Page 65: Spunite   exploring identity management options in office 365

Pay attention to Assignment Paths!

Page 66: Spunite   exploring identity management options in office 365

Demo – Group Licensing

Page 67: Spunite   exploring identity management options in office 365

Currently expected to be available to E3 and above at General Availability*.

*Subject to confirmation

Page 68: Spunite   exploring identity management options in office 365
Page 69: Spunite   exploring identity management options in office 365
Page 70: Spunite   exploring identity management options in office 365
Page 71: Spunite   exploring identity management options in office 365
Page 72: Spunite   exploring identity management options in office 365
Page 73: Spunite   exploring identity management options in office 365

What is needed?

Page 74: Spunite   exploring identity management options in office 365
Page 75: Spunite   exploring identity management options in office 365

Already logged in?

Log out and choose forget… Or clear your cookies…

Page 76: Spunite   exploring identity management options in office 365

Limitations

Page 77: Spunite   exploring identity management options in office 365
Page 78: Spunite   exploring identity management options in office 365
Page 79: Spunite   exploring identity management options in office 365
Page 80: Spunite   exploring identity management options in office 365
Page 81: Spunite   exploring identity management options in office 365
Page 82: Spunite   exploring identity management options in office 365
Page 83: Spunite   exploring identity management options in office 365

Demo – Sign-in Branding

Page 84: Spunite   exploring identity management options in office 365
Page 85: Spunite   exploring identity management options in office 365

Many options - For Example

http://bit.ly/fedthirdparties

Page 87: Spunite   exploring identity management options in office 365
Page 88: Spunite   exploring identity management options in office 365