SlideShare ist ein Scribd-Unternehmen logo
1 von 44
Antonio Maio
Protiviti - Senior SharePoint Architect & Senior Manager
Microsoft SharePoint Server MVP
Hybrid Identity Management
with SharePoint and Office 365
Email: Antonio.maio@protiviti.com
Blog: www.trustsharepoint.com
Slide share: http://www.slideshare.net/AntonioMaio2
Twitter: @AntonioMaio2
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
About Protiviti
INDIA (3)
Protiviti (www.protiviti.com) is a global consulting firm that helps companies solve problems in finance,
technology, operations, governance, risk and internal audit. Through our network of more than 70 offices in
over 20 countries, we have served more than 35 percent of FORTUNE® 1000 and Global 500 companies. We
also work with smaller, growing companies, including those looking to go public, as well as with government
agencies.
Protiviti is a wholly owned subsidiary of Robert Half International Inc. (NYSE: RHI). Founded in 1948, Robert
Half International is a member of the S&P 500 index.
• 2,500+
professionals
• 1,000+ clients
• 70+ offices
• Over 20
countries in
the Americas,
Europe and
Asia-Pacific
Protiviti is one of
the fastest
growing
consulting firms
worldwide. Our
revenues have
increased from
US $15 million in
2002, to US
$423.8 million in
2011.
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Securing Identities
and the Hybrid Cloud
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Why Hybrid?
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Identity Models for Office 365
Cloud Identity
Synchronized Identity
Federated Identity
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Cloud Identity Model
• No on-premises directory
• Very small number of users
• On-premises directory is undergoing significant restructuring
• Trialing Office 365
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Synchronized Identity Model
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Federated Identity Model
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Selecting an Identity Model
I need to…
Synchronized
Identity
Federated Identity
(Directory Sync with
Single Sign-On)
Sync new user, contact, groups created in on-premises AD to cloud automatically
Sync incremental updates to existing accounts in on-premises AD to cloud automatically
Set up my tenant for Office 365 hybrid scenarios Limited Support
Enable users to sign in to cloud services using on-premises password
Control password policies from on-premises Active Directory
Enable cloud-based multi-factor authentication solutions
Enable on-premises multi-factor authentication solutions
Ensure user authentications occur in on-premises Active Directory
Implement single sign-on using corporate credentials
Customize the user Sign-In page *
Limit access to cloud services based on the location, client type or Exchange endpoint of
the client
?
* Available in Basic or Premium Edition of Azure Active Directory. See Chris Goosen’s Post for
details on how to brand your Office 365 sign in page.: http://blog.enowsoftware.com/solutions-
engine/bid/187358/Add-Custom-Branding-to-Your-Office-365-Sign-in-Page .
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
History Lesson
• DirSync
• Azure Active Directory Sync (AAD Sync)
– Introduced Multi-Forest Support
• Azure ADConnect (GA June 24, 2015)
– Replaces both DirSync and AADSync
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Azure ADConnect
• New deployment & configuration tool for quickly
connecting on premise identities to the cloud
• Express Settings: Easily connect a single AD forest (in minutes)
• More options: Specify a group or OU to sync only specific identities
• Built in Upgrade: Easily upgrade existing DirSync or AAD Sync
Available now: http://go.microsoft.com/fwlink/?LinkId=615771
• Includes Azure ADConnect Health
• Monitors ADFS Servers (health, performance, login activity)
• Only available for Azure AD Premium Edition
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Azure ADConnect – Configuration Options
• Synchronize multiple AD forests
• User self-service password reset in the cloud with write-back to on premises AD
• Provisioning from the cloud with user write back to on premises AD
• Write back of “Groups in Office 365” to on premises distribution groups in a forest with
Exchange
• Device write back so on-premises access
control policies in ADFS can recognize devices
registered with Azure AD (includes support for
Azure AD Join in Windows 10)
• Sync custom AD attributes to your Azure AD
tenant - consume by your cloud apps
• Configure password sync or federation –
selecting federation provides a simplified
ADFS deployment
• Other options…
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Azure ADConnect Health
• Email Notifications for Critical Alerts
– Events, configuration information, transactions,
performance data
• Graphs – Usage Insights
– Ex. Login Activity (number of successful logins,
failed logins, trends)
– Available when enable auditing on your ADFS
servers
– Based on audits generated when user's login and
tokens are generated for applications
• Performance monitoring across multiple
servers
– token request counters, processor, memory,
latency
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Topology – Directory Synchronization
AD DCAzure
ADConnect
DMZ Firewall
Internet Firewall
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Topology – Federated Identity
AD DCAzure
ADConnect
DMZ Firewall
Internet Firewall
ADFS
ADFS Proxy
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Topology – Federated Identity
(High Availability)
AD DC 1Azure
ADConnect
DMZ Firewall
Internet Firewall
Azure
ADConnect
(Staging Mode)
ADFS 1
ADFS
Proxy 1
ADFS
Proxy 2
ADFS 2AD DC 2
Load Balancer
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
1. Prepare for Directory Synchronization
• Prerequisites, Permissions, Understand Limits
• Alternate UPN Suffix for .local Domain
• Clean Up UPNs & ProxyAddresses in AD (use Microsoft Office 365 IdFix)
2. Activate Directory Synchronization
• Register your Domain with Office 365 & Validate Ownership
• Activate Directory Sync in Office 365 > Admin > Users
3. Setup ADConnect on your Directory Synchronization Server
• Provide Office 365 Service Admin Credentials
• Provide on premise AD Enterprise Domain Admin Credentials
4. Synchronize Directories
5. Activate Users & Assign Office 365 Licenses
6. Manage Directory Synchronization
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
DEMONSTRATION
INSTALLING & CONFIGURING AZURE AD CONNECT
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Assign Licenses/Location via Powershell
• Office 365 Admin GUI allows for bulk assignment (limit 25 users at a time)
• Useful Powershell Commands for bulk license assignment
Connect-MsolService
Connect to your Office 365 Service.
Get-Commmand -Module MSOnline
Display available Powershell commands .
Get-MsolUser
Display list of users currently within your Office 365 tenant.
Get-MsolUser –UnlicensedUsersOnly
Display only list of users in your Office 365 tenant which do not have a license.
Get-MsolAccountSku
Displays your Office 365 tenant license SKU. Use this when assigning a license.
Set-MsolUser -UserPrincipalName “<user’s upn>” -UsageLocation "US“
Set the location for a specific user by specifying the user principal name.
Set-MsolUserLicense -UserPrincipalName " <user’s upn> " -AddLicenses “<your license SKU“
Set a license for the specified user. Use the SKU displayed by the command above.
• Combine Powershell commands to assign licenses to all unlicensed users
Get-MsolUser -UnlicensedUsersOnly | Set-Msoluser - UsageLocation "US“
Get-MsolUser -UnlicensedUsersOnly | Set-MsolUserLicense -AddLicenses “<your license SKU>"
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
DEMONSTRATION
ACTIVATING USERS IN OFFICE 365 WITH POWERSHELL
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Configuring Identity Federation
1. Prepare for Single Sign On
• Prerequisites, Prepare Active Directory
• Prepare Network infrastructure for Federation servers
2. Setup the On Premise Active Directory Federation Services (ADFS)
• Set up Windows PowerShell for SSO with AD FS
• Set up trust between AD FS and Azure AD
3. Setup Directory Synchronization with Azure ADConnect
4. Verify & Manage Single Sign On
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Overall Benefits
• Reduced administration costs
Leveraging your already existing on-premises user and group accounts
• Improved productivity
Significantly reduce the amount of time it takes to make cloud based services accessible
• Increased security
Ensures that only appropriate users have access to your corporate assets. Retain strict
control over user identities and related policies through on premise AD.
• Enable Hybrid Scenarios
Enjoy the benefits of the cloud combined with your existing infrastructure through
robust hybrid configuration scenarios
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Step by Step Procedures
Please see 2 blog posts:
• Part 1: http://sharepoint.protiviti.com/blog/Lists/Posts/Post.aspx?ID=142
• Part 2: http://sharepoint.protiviti.com/blog/Lists/Posts/Post.aspx?ID=165
This deck will be posted to my blog: www.trustsharepoint.com
*Note: these posts refer to DirSync in several cases, but the activities for cleaning up AD and preparing for
Identity Synchronization or Identity Federation are still applicable with Azure AD Connect.
Antonio Maio
Protiviti - Senior SharePoint Architect & Senior Manager
Microsoft SharePoint Server MVP
Thank You – Questions & Answer
Email: Antonio.maio@protiviti.com
Blog: www.trustsharepoint.com
Slide share: http://www.slideshare.net/AntonioMaio2
Twitter: @AntonioMaio2
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Appendix
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
1. Prepare for Directory Synchronization
• Prerequisites, Permissions, Understand Limits
• Alternate UPN Suffix for .local Domain
• Clean Up UPNs & ProxyAddresses in AD (use Microsoft Office 365 IdFix)
2. Activate Directory Synchronization
• Register your Domain with Office 365 & Validate Ownership
• Activate Directory Sync in Office 365 > Admin > Users
3. Setup ADConnect on your Directory Synchronization Server
• Provide Office 365 Service Admin Credentials
• Provide on premise AD Enterprise Domain Admin Credentials
4. Synchronize Directories
5. Activate Users & Assign Office 365 Licenses
6. Manage Directory Synchronization
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
• Alternate UPN Suffix for .local Domain
Steps - Configuring Azure ADConnect
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
• Alternate UPN Suffix for .local Domain
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
• Clean up Active Directory – set UPN for each user identity
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
• Clean up Active Directory – set proxyAddresses each user identity
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
• Clean up Active Directory – set proxyAddresses each user identity
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
1. Prepare for Directory Synchronization
• Prerequisites, Permissions, Understand Limits
• Alternate UPN Suffix for .local Domain
• Clean Up UPNs & ProxyAddresses in AD (use Microsoft Office 365 IdFix)
2. Activate Directory Synchronization
• Register your Domain with Office 365 & Validate Ownership
• Activate Directory Sync in Office 365 > Admin > Users
3. Setup ADConnect on your Directory Synchronization Server
• Provide Office 365 Service Admin Credentials
• Provide on premise AD Enterprise Domain Admin Credentials
4. Synchronize Directories
5. Activate Users & Assign Office 365 Licenses
6. Manage Directory Synchronization
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
• Register Domain with Office 365 & Validate Ownership
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
• Register Domain with Office 365 & Validate Ownership
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
• Register Domain with Office 365 & Validate Ownership
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
• Register Domain with Office 365 & Validate Ownership
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
• Register Domain with Office 365 & Validate Ownership
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
• Activate Directory Synchronization
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
• Activate Directory Synchronization
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
1. Prepare for Directory Synchronization
• Prerequisites, Permissions, Understand Limits
• Alternate UPN Suffix for .local Domain
• Clean Up UPNs & ProxyAddresses in AD (use Microsoft Office 365 IdFix)
2. Activate Directory Synchronization
• Register your Domain with Office 365 & Validate Ownership
• Activate Directory Sync in Office 365 > Admin > Users
3. Setup ADConnect on your Directory Synchronization Server
• Provide Office 365 Service Admin Credentials
• Provide on premise AD Enterprise Domain Admin Credentials
4. Synchronize Directories
5. Activate Users & Assign Office 365 Licenses
6. Manage Directory Synchronization
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
• Deploying and Configuring Azure AD Connect – Express Settings
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
1. Prepare for Directory Synchronization
• Prerequisites, Permissions, Understand Limits
• Alternate UPN Suffix for .local Domain
• Clean Up UPNs & ProxyAddresses in AD (use Microsoft Office 365 IdFix)
2. Activate Directory Synchronization
• Register your Domain with Office 365 & Validate Ownership
• Activate Directory Sync in Office 365 > Admin > Users
3. Setup ADConnect on your Directory Synchronization Server
• Provide Office 365 Service Admin Credentials
• Provide on premise AD Enterprise Domain Admin Credentials
4. Synchronize Directories
5. Activate Users & Assign Office 365 Licenses
6. Manage Directory Synchronization
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
• After users & groups are synchronized
© 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer.
CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party.
Steps - Configuring Azure ADConnect
1. Prepare for Directory Synchronization
• Prerequisites, Permissions, Understand Limits
• Alternate UPN Suffix for .local Domain
• Clean Up UPNs & ProxyAddresses in AD (use Microsoft Office 365 IdFix)
2. Activate Directory Synchronization
• Register your Domain with Office 365 & Validate Ownership
• Activate Directory Sync in Office 365 > Admin > Users
3. Setup ADConnect on your Directory Synchronization Server
• Provide Office 365 Service Admin Credentials
• Provide on premise AD Enterprise Domain Admin Credentials
4. Synchronize Directories
5. Activate Users & Assign Office 365 Licenses
6. Manage Directory Synchronization

Weitere ähnliche Inhalte

Was ist angesagt?

SpUnite17 Exploring Identity Management Options in Office 365
SpUnite17 Exploring Identity Management Options in Office 365SpUnite17 Exploring Identity Management Options in Office 365
SpUnite17 Exploring Identity Management Options in Office 365NCCOMMS
 
Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance
Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance
Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance Albert Hoitingh
 
What’s new in SharePoint 2016!
What’s new in SharePoint 2016!What’s new in SharePoint 2016!
What’s new in SharePoint 2016!AntonioMaio2
 
What’s the News About SharePoint News - SPFestSeattle
What’s the News About SharePoint News - SPFestSeattleWhat’s the News About SharePoint News - SPFestSeattle
What’s the News About SharePoint News - SPFestSeattleDrew Madelung
 
Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...
Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...
Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...Rencore
 
Sp24 design a share point 2013 architecture – the basics
Sp24   design a share point 2013 architecture – the basicsSp24   design a share point 2013 architecture – the basics
Sp24 design a share point 2013 architecture – the basicsAlexander Meijers
 
Information Barriers in MS Teams
Information Barriers in MS TeamsInformation Barriers in MS Teams
Information Barriers in MS TeamsNanddeep Nachan
 
Maximizing Your Office 365 Investments With OneDrive
Maximizing Your Office 365 Investments With OneDriveMaximizing Your Office 365 Investments With OneDrive
Maximizing Your Office 365 Investments With OneDriveNetwoven Inc.
 
Office 365 for Business Demystified for the average Technology and Business P...
Office 365 for Business Demystified for the average Technology and Business P...Office 365 for Business Demystified for the average Technology and Business P...
Office 365 for Business Demystified for the average Technology and Business P...Noorez Khamis
 
JAXSPUG April 2016 - Staying in the Know with Office 365
JAXSPUG April 2016 - Staying in the Know with Office 365JAXSPUG April 2016 - Staying in the Know with Office 365
JAXSPUG April 2016 - Staying in the Know with Office 365Scott Hoag
 
Building solutions with SPFx that work across SharePoint and Teams
Building solutions with SPFx that work across SharePoint and TeamsBuilding solutions with SPFx that work across SharePoint and Teams
Building solutions with SPFx that work across SharePoint and TeamsVignesh Ganesan I Microsoft MVP
 
Best practices for security and governance in share point 2013 published
Best practices for security and governance in share point 2013   publishedBest practices for security and governance in share point 2013   published
Best practices for security and governance in share point 2013 publishedAntonioMaio2
 
Labelling in Microsoft 365 - Retention & Sensitivity
Labelling in Microsoft 365 - Retention & SensitivityLabelling in Microsoft 365 - Retention & Sensitivity
Labelling in Microsoft 365 - Retention & SensitivityDrew Madelung
 
SPUnite17 Information Management and Data Governance in Office365
SPUnite17 Information Management and Data Governance in Office365SPUnite17 Information Management and Data Governance in Office365
SPUnite17 Information Management and Data Governance in Office365NCCOMMS
 
Managing enterprise applications, permissions, and consent in Azure Active Di...
Managing enterprise applications, permissions, and consent in Azure Active Di...Managing enterprise applications, permissions, and consent in Azure Active Di...
Managing enterprise applications, permissions, and consent in Azure Active Di...CoLaboraDK
 
SPUnite17 External Sharing in SharePoint Online
SPUnite17 External Sharing in SharePoint OnlineSPUnite17 External Sharing in SharePoint Online
SPUnite17 External Sharing in SharePoint OnlineNCCOMMS
 
File Security in Microsoft SharePoint and OneDrive
File Security in Microsoft SharePoint and OneDriveFile Security in Microsoft SharePoint and OneDrive
File Security in Microsoft SharePoint and OneDriveDavid J Rosenthal
 
Unlock your Big Data with Analytics and BI on Office 365 - OFF103
Unlock your Big Data with Analytics and BI on Office 365 - OFF103Unlock your Big Data with Analytics and BI on Office 365 - OFF103
Unlock your Big Data with Analytics and BI on Office 365 - OFF103Brian Culver
 
Taking OneDrive for Business administration to the next level
Taking OneDrive for Business administration to the next levelTaking OneDrive for Business administration to the next level
Taking OneDrive for Business administration to the next levelDrew Madelung
 

Was ist angesagt? (20)

SpUnite17 Exploring Identity Management Options in Office 365
SpUnite17 Exploring Identity Management Options in Office 365SpUnite17 Exploring Identity Management Options in Office 365
SpUnite17 Exploring Identity Management Options in Office 365
 
Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance
Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance
Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance
 
What’s new in SharePoint 2016!
What’s new in SharePoint 2016!What’s new in SharePoint 2016!
What’s new in SharePoint 2016!
 
What’s the News About SharePoint News - SPFestSeattle
What’s the News About SharePoint News - SPFestSeattleWhat’s the News About SharePoint News - SPFestSeattle
What’s the News About SharePoint News - SPFestSeattle
 
Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...
Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...
Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...
 
Sp24 design a share point 2013 architecture – the basics
Sp24   design a share point 2013 architecture – the basicsSp24   design a share point 2013 architecture – the basics
Sp24 design a share point 2013 architecture – the basics
 
Information Barriers in MS Teams
Information Barriers in MS TeamsInformation Barriers in MS Teams
Information Barriers in MS Teams
 
Maximizing Your Office 365 Investments With OneDrive
Maximizing Your Office 365 Investments With OneDriveMaximizing Your Office 365 Investments With OneDrive
Maximizing Your Office 365 Investments With OneDrive
 
Office 365 for Business Demystified for the average Technology and Business P...
Office 365 for Business Demystified for the average Technology and Business P...Office 365 for Business Demystified for the average Technology and Business P...
Office 365 for Business Demystified for the average Technology and Business P...
 
JAXSPUG April 2016 - Staying in the Know with Office 365
JAXSPUG April 2016 - Staying in the Know with Office 365JAXSPUG April 2016 - Staying in the Know with Office 365
JAXSPUG April 2016 - Staying in the Know with Office 365
 
Building solutions with SPFx that work across SharePoint and Teams
Building solutions with SPFx that work across SharePoint and TeamsBuilding solutions with SPFx that work across SharePoint and Teams
Building solutions with SPFx that work across SharePoint and Teams
 
Best practices for security and governance in share point 2013 published
Best practices for security and governance in share point 2013   publishedBest practices for security and governance in share point 2013   published
Best practices for security and governance in share point 2013 published
 
Labelling in Microsoft 365 - Retention & Sensitivity
Labelling in Microsoft 365 - Retention & SensitivityLabelling in Microsoft 365 - Retention & Sensitivity
Labelling in Microsoft 365 - Retention & Sensitivity
 
SPUnite17 Information Management and Data Governance in Office365
SPUnite17 Information Management and Data Governance in Office365SPUnite17 Information Management and Data Governance in Office365
SPUnite17 Information Management and Data Governance in Office365
 
Managing enterprise applications, permissions, and consent in Azure Active Di...
Managing enterprise applications, permissions, and consent in Azure Active Di...Managing enterprise applications, permissions, and consent in Azure Active Di...
Managing enterprise applications, permissions, and consent in Azure Active Di...
 
SPUnite17 External Sharing in SharePoint Online
SPUnite17 External Sharing in SharePoint OnlineSPUnite17 External Sharing in SharePoint Online
SPUnite17 External Sharing in SharePoint Online
 
File Security in Microsoft SharePoint and OneDrive
File Security in Microsoft SharePoint and OneDriveFile Security in Microsoft SharePoint and OneDrive
File Security in Microsoft SharePoint and OneDrive
 
Unlock your Big Data with Analytics and BI on Office 365 - OFF103
Unlock your Big Data with Analytics and BI on Office 365 - OFF103Unlock your Big Data with Analytics and BI on Office 365 - OFF103
Unlock your Big Data with Analytics and BI on Office 365 - OFF103
 
Azure AD with Office 365 and Beyond!
Azure AD with Office 365 and Beyond!Azure AD with Office 365 and Beyond!
Azure AD with Office 365 and Beyond!
 
Taking OneDrive for Business administration to the next level
Taking OneDrive for Business administration to the next levelTaking OneDrive for Business administration to the next level
Taking OneDrive for Business administration to the next level
 

Andere mochten auch

Developing custom claim providers to enable authorization in share point an...
Developing custom claim providers to enable authorization in share point   an...Developing custom claim providers to enable authorization in share point   an...
Developing custom claim providers to enable authorization in share point an...AntonioMaio2
 
Data Visualization in SharePoint and Office 365
Data Visualization in SharePoint and Office 365Data Visualization in SharePoint and Office 365
Data Visualization in SharePoint and Office 365AntonioMaio2
 
SPS Sydney - Office 365 and Cloud Identity – What does it mean for me?
SPS Sydney - Office 365 and Cloud Identity – What does it mean for me?SPS Sydney - Office 365 and Cloud Identity – What does it mean for me?
SPS Sydney - Office 365 and Cloud Identity – What does it mean for me?Scott Hoag
 
JAXSPUG January 2016 - Microsoft Cloud Identities in Azure and Office 365
JAXSPUG January 2016 - Microsoft Cloud Identities in Azure and Office 365JAXSPUG January 2016 - Microsoft Cloud Identities in Azure and Office 365
JAXSPUG January 2016 - Microsoft Cloud Identities in Azure and Office 365Scott Hoag
 
Understanding Identity Management with Office 365
Understanding Identity Management with Office 365Understanding Identity Management with Office 365
Understanding Identity Management with Office 365Perficient, Inc.
 
Understanding Office 365’s Identity Solutions: Deep Dive - EPC Group
Understanding Office 365’s Identity Solutions: Deep Dive - EPC GroupUnderstanding Office 365’s Identity Solutions: Deep Dive - EPC Group
Understanding Office 365’s Identity Solutions: Deep Dive - EPC GroupEPC Group
 
SPIntersection 2016 - MICROSOFT CLOUD IDENTITIES IN AZURE AND OFFICE 365
SPIntersection 2016 - MICROSOFT CLOUD IDENTITIES IN AZURE AND OFFICE 365SPIntersection 2016 - MICROSOFT CLOUD IDENTITIES IN AZURE AND OFFICE 365
SPIntersection 2016 - MICROSOFT CLOUD IDENTITIES IN AZURE AND OFFICE 365Scott Hoag
 
Brian Desmond - Identity and directory synchronization with office 365 and wi...
Brian Desmond - Identity and directory synchronization with office 365 and wi...Brian Desmond - Identity and directory synchronization with office 365 and wi...
Brian Desmond - Identity and directory synchronization with office 365 and wi...Nordic Infrastructure Conference
 
Khalid presentation se ns
Khalid presentation se nsKhalid presentation se ns
Khalid presentation se nsKhalid Barry
 
2 q13 arezzo_apresentacao_call eng v2
2 q13 arezzo_apresentacao_call eng v22 q13 arezzo_apresentacao_call eng v2
2 q13 arezzo_apresentacao_call eng v2Arezzori
 
International Student Presentation
International Student PresentationInternational Student Presentation
International Student PresentationPablo Echeverria
 

Andere mochten auch (12)

Developing custom claim providers to enable authorization in share point an...
Developing custom claim providers to enable authorization in share point   an...Developing custom claim providers to enable authorization in share point   an...
Developing custom claim providers to enable authorization in share point an...
 
Data Visualization in SharePoint and Office 365
Data Visualization in SharePoint and Office 365Data Visualization in SharePoint and Office 365
Data Visualization in SharePoint and Office 365
 
SPS Sydney - Office 365 and Cloud Identity – What does it mean for me?
SPS Sydney - Office 365 and Cloud Identity – What does it mean for me?SPS Sydney - Office 365 and Cloud Identity – What does it mean for me?
SPS Sydney - Office 365 and Cloud Identity – What does it mean for me?
 
JAXSPUG January 2016 - Microsoft Cloud Identities in Azure and Office 365
JAXSPUG January 2016 - Microsoft Cloud Identities in Azure and Office 365JAXSPUG January 2016 - Microsoft Cloud Identities in Azure and Office 365
JAXSPUG January 2016 - Microsoft Cloud Identities in Azure and Office 365
 
Understanding Identity Management with Office 365
Understanding Identity Management with Office 365Understanding Identity Management with Office 365
Understanding Identity Management with Office 365
 
Understanding Office 365’s Identity Solutions: Deep Dive - EPC Group
Understanding Office 365’s Identity Solutions: Deep Dive - EPC GroupUnderstanding Office 365’s Identity Solutions: Deep Dive - EPC Group
Understanding Office 365’s Identity Solutions: Deep Dive - EPC Group
 
SPIntersection 2016 - MICROSOFT CLOUD IDENTITIES IN AZURE AND OFFICE 365
SPIntersection 2016 - MICROSOFT CLOUD IDENTITIES IN AZURE AND OFFICE 365SPIntersection 2016 - MICROSOFT CLOUD IDENTITIES IN AZURE AND OFFICE 365
SPIntersection 2016 - MICROSOFT CLOUD IDENTITIES IN AZURE AND OFFICE 365
 
Brian Desmond - Identity and directory synchronization with office 365 and wi...
Brian Desmond - Identity and directory synchronization with office 365 and wi...Brian Desmond - Identity and directory synchronization with office 365 and wi...
Brian Desmond - Identity and directory synchronization with office 365 and wi...
 
Khalid presentation se ns
Khalid presentation se nsKhalid presentation se ns
Khalid presentation se ns
 
DURF (Dell'Aquila) v4
DURF  (Dell'Aquila) v4DURF  (Dell'Aquila) v4
DURF (Dell'Aquila) v4
 
2 q13 arezzo_apresentacao_call eng v2
2 q13 arezzo_apresentacao_call eng v22 q13 arezzo_apresentacao_call eng v2
2 q13 arezzo_apresentacao_call eng v2
 
International Student Presentation
International Student PresentationInternational Student Presentation
International Student Presentation
 

Ähnlich wie Hybrid Identity Management with SharePoint and Office 365 - Antonio Maio

Identity management challenges when moving share point to the cloud antonio...
Identity management challenges when moving share point to the cloud   antonio...Identity management challenges when moving share point to the cloud   antonio...
Identity management challenges when moving share point to the cloud antonio...AntonioMaio2
 
SPSVB - Office 365 and Cloud Identity - What Does It Mean for Me?
SPSVB - Office 365 and Cloud Identity - What Does It Mean for Me?SPSVB - Office 365 and Cloud Identity - What Does It Mean for Me?
SPSVB - Office 365 and Cloud Identity - What Does It Mean for Me?Scott Hoag
 
Identity Management for Office 365 and Microsoft Azure
Identity Management for Office 365 and Microsoft AzureIdentity Management for Office 365 and Microsoft Azure
Identity Management for Office 365 and Microsoft AzureSparkhound Inc.
 
O365-AzureAD Identity management
O365-AzureAD Identity managementO365-AzureAD Identity management
O365-AzureAD Identity managementDavid Pechon
 
Cloudreach Voices - Azure AD and the Public Cloud
Cloudreach Voices - Azure AD and the Public CloudCloudreach Voices - Azure AD and the Public Cloud
Cloudreach Voices - Azure AD and the Public CloudCloudreach
 
Proven Practices for Office 365 Deployment, Security and Management
Proven Practices for Office 365 Deployment, Security and ManagementProven Practices for Office 365 Deployment, Security and Management
Proven Practices for Office 365 Deployment, Security and ManagementPerficient, Inc.
 
Azure Active Directory
Azure Active DirectoryAzure Active Directory
Azure Active DirectorySovelto
 
Windows Azure Active Directory
Windows Azure Active DirectoryWindows Azure Active Directory
Windows Azure Active DirectoryKrunal Trivedi
 
Introduction to Active Directory
Introduction to Active DirectoryIntroduction to Active Directory
Introduction to Active DirectoryJalpesh Vadgama
 
Enterprise Security: Tableau vs. Power BI
Enterprise Security: Tableau vs. Power BIEnterprise Security: Tableau vs. Power BI
Enterprise Security: Tableau vs. Power BISenturus
 
Envision it SharePoint Extranet Webinar Series - Federation and Office 365
Envision it SharePoint Extranet Webinar Series - Federation and Office 365Envision it SharePoint Extranet Webinar Series - Federation and Office 365
Envision it SharePoint Extranet Webinar Series - Federation and Office 365Envision IT
 
JoTechies - Cloud identity
JoTechies - Cloud identityJoTechies - Cloud identity
JoTechies - Cloud identityJoTechies
 
Active Directory Proposal
Active Directory ProposalActive Directory Proposal
Active Directory ProposalMJ Ferdous
 
Hitchhiker's Guide to Azure AD - SPS St Louis 2018
Hitchhiker's Guide to Azure AD - SPS St Louis 2018Hitchhiker's Guide to Azure AD - SPS St Louis 2018
Hitchhiker's Guide to Azure AD - SPS St Louis 2018Max Fritz
 
Office 365 Project Online - Comprehensive Guide
Office 365 Project Online - Comprehensive GuideOffice 365 Project Online - Comprehensive Guide
Office 365 Project Online - Comprehensive GuideDavid J Rosenthal
 
Webinar on Different types of SharePoint architectural models
Webinar on Different types of SharePoint architectural modelsWebinar on Different types of SharePoint architectural models
Webinar on Different types of SharePoint architectural modelsVignesh Ganesan I Microsoft MVP
 
Best Practices for Security and Governance in SharePoint 2013
Best Practices for Security and Governance in SharePoint 2013  Best Practices for Security and Governance in SharePoint 2013
Best Practices for Security and Governance in SharePoint 2013 InnoTech
 
Why you should use common data service final
Why you should use common data service finalWhy you should use common data service final
Why you should use common data service finalJoel Lindstrom
 
2018 November - AZUGDK - Azure AD
2018 November - AZUGDK - Azure AD 2018 November - AZUGDK - Azure AD
2018 November - AZUGDK - Azure AD Peter Selch Dahl
 
Mitigating Risk in a Complex Hybrid Directory Environment
Mitigating Risk in a Complex Hybrid Directory EnvironmentMitigating Risk in a Complex Hybrid Directory Environment
Mitigating Risk in a Complex Hybrid Directory EnvironmentQuest
 

Ähnlich wie Hybrid Identity Management with SharePoint and Office 365 - Antonio Maio (20)

Identity management challenges when moving share point to the cloud antonio...
Identity management challenges when moving share point to the cloud   antonio...Identity management challenges when moving share point to the cloud   antonio...
Identity management challenges when moving share point to the cloud antonio...
 
SPSVB - Office 365 and Cloud Identity - What Does It Mean for Me?
SPSVB - Office 365 and Cloud Identity - What Does It Mean for Me?SPSVB - Office 365 and Cloud Identity - What Does It Mean for Me?
SPSVB - Office 365 and Cloud Identity - What Does It Mean for Me?
 
Identity Management for Office 365 and Microsoft Azure
Identity Management for Office 365 and Microsoft AzureIdentity Management for Office 365 and Microsoft Azure
Identity Management for Office 365 and Microsoft Azure
 
O365-AzureAD Identity management
O365-AzureAD Identity managementO365-AzureAD Identity management
O365-AzureAD Identity management
 
Cloudreach Voices - Azure AD and the Public Cloud
Cloudreach Voices - Azure AD and the Public CloudCloudreach Voices - Azure AD and the Public Cloud
Cloudreach Voices - Azure AD and the Public Cloud
 
Proven Practices for Office 365 Deployment, Security and Management
Proven Practices for Office 365 Deployment, Security and ManagementProven Practices for Office 365 Deployment, Security and Management
Proven Practices for Office 365 Deployment, Security and Management
 
Azure Active Directory
Azure Active DirectoryAzure Active Directory
Azure Active Directory
 
Windows Azure Active Directory
Windows Azure Active DirectoryWindows Azure Active Directory
Windows Azure Active Directory
 
Introduction to Active Directory
Introduction to Active DirectoryIntroduction to Active Directory
Introduction to Active Directory
 
Enterprise Security: Tableau vs. Power BI
Enterprise Security: Tableau vs. Power BIEnterprise Security: Tableau vs. Power BI
Enterprise Security: Tableau vs. Power BI
 
Envision it SharePoint Extranet Webinar Series - Federation and Office 365
Envision it SharePoint Extranet Webinar Series - Federation and Office 365Envision it SharePoint Extranet Webinar Series - Federation and Office 365
Envision it SharePoint Extranet Webinar Series - Federation and Office 365
 
JoTechies - Cloud identity
JoTechies - Cloud identityJoTechies - Cloud identity
JoTechies - Cloud identity
 
Active Directory Proposal
Active Directory ProposalActive Directory Proposal
Active Directory Proposal
 
Hitchhiker's Guide to Azure AD - SPS St Louis 2018
Hitchhiker's Guide to Azure AD - SPS St Louis 2018Hitchhiker's Guide to Azure AD - SPS St Louis 2018
Hitchhiker's Guide to Azure AD - SPS St Louis 2018
 
Office 365 Project Online - Comprehensive Guide
Office 365 Project Online - Comprehensive GuideOffice 365 Project Online - Comprehensive Guide
Office 365 Project Online - Comprehensive Guide
 
Webinar on Different types of SharePoint architectural models
Webinar on Different types of SharePoint architectural modelsWebinar on Different types of SharePoint architectural models
Webinar on Different types of SharePoint architectural models
 
Best Practices for Security and Governance in SharePoint 2013
Best Practices for Security and Governance in SharePoint 2013  Best Practices for Security and Governance in SharePoint 2013
Best Practices for Security and Governance in SharePoint 2013
 
Why you should use common data service final
Why you should use common data service finalWhy you should use common data service final
Why you should use common data service final
 
2018 November - AZUGDK - Azure AD
2018 November - AZUGDK - Azure AD 2018 November - AZUGDK - Azure AD
2018 November - AZUGDK - Azure AD
 
Mitigating Risk in a Complex Hybrid Directory Environment
Mitigating Risk in a Complex Hybrid Directory EnvironmentMitigating Risk in a Complex Hybrid Directory Environment
Mitigating Risk in a Complex Hybrid Directory Environment
 

Mehr von AntonioMaio2

Introduction to Microsoft Enterprise Mobility + Security
Introduction to Microsoft Enterprise Mobility + SecurityIntroduction to Microsoft Enterprise Mobility + Security
Introduction to Microsoft Enterprise Mobility + SecurityAntonioMaio2
 
Learn how to protect against and recover from data breaches in Office 365
Learn how to protect against and recover from data breaches in Office 365Learn how to protect against and recover from data breaches in Office 365
Learn how to protect against and recover from data breaches in Office 365AntonioMaio2
 
Information security in office 365 a shared responsibility - antonio maio
Information security in office 365   a shared responsibility - antonio maioInformation security in office 365   a shared responsibility - antonio maio
Information security in office 365 a shared responsibility - antonio maioAntonioMaio2
 
A Practical Guide Information Governance with Microsoft SharePoint 2013
A Practical Guide Information Governance with Microsoft SharePoint 2013A Practical Guide Information Governance with Microsoft SharePoint 2013
A Practical Guide Information Governance with Microsoft SharePoint 2013AntonioMaio2
 
Keeping SharePoint Always On
Keeping SharePoint Always OnKeeping SharePoint Always On
Keeping SharePoint Always OnAntonioMaio2
 
How Claims is Changing the Way We Authenticate and Authorize in SharePoint
How Claims is Changing the Way We Authenticate and Authorize in SharePointHow Claims is Changing the Way We Authenticate and Authorize in SharePoint
How Claims is Changing the Way We Authenticate and Authorize in SharePointAntonioMaio2
 
SPTechCon Boston 2013 - Introduction to Security in Microsoft Sharepoint 2013...
SPTechCon Boston 2013 - Introduction to Security in Microsoft Sharepoint 2013...SPTechCon Boston 2013 - Introduction to Security in Microsoft Sharepoint 2013...
SPTechCon Boston 2013 - Introduction to Security in Microsoft Sharepoint 2013...AntonioMaio2
 
Best Practices for Security in Microsoft SharePoint 2013
Best Practices for Security in Microsoft SharePoint 2013Best Practices for Security in Microsoft SharePoint 2013
Best Practices for Security in Microsoft SharePoint 2013AntonioMaio2
 
Intro to Develop and Deploy Apps for Microsoft SharePoint and Office 2013
Intro to Develop and Deploy Apps for Microsoft SharePoint and Office 2013Intro to Develop and Deploy Apps for Microsoft SharePoint and Office 2013
Intro to Develop and Deploy Apps for Microsoft SharePoint and Office 2013AntonioMaio2
 
SharePoint Governance: Impacts of Moving to the Cloud
SharePoint Governance: Impacts of Moving to the CloudSharePoint Governance: Impacts of Moving to the Cloud
SharePoint Governance: Impacts of Moving to the CloudAntonioMaio2
 
Share point security 101 sps-ottawa 2012 - antonio maio
Share point security 101   sps-ottawa 2012 - antonio maioShare point security 101   sps-ottawa 2012 - antonio maio
Share point security 101 sps-ottawa 2012 - antonio maioAntonioMaio2
 
Webinar: Take Control of SharePoint Security
Webinar: Take Control of SharePoint SecurityWebinar: Take Control of SharePoint Security
Webinar: Take Control of SharePoint SecurityAntonioMaio2
 
SharePoint Saturday Toronto July 2012 - Antonio Maio
SharePoint Saturday Toronto July 2012 - Antonio MaioSharePoint Saturday Toronto July 2012 - Antonio Maio
SharePoint Saturday Toronto July 2012 - Antonio MaioAntonioMaio2
 

Mehr von AntonioMaio2 (13)

Introduction to Microsoft Enterprise Mobility + Security
Introduction to Microsoft Enterprise Mobility + SecurityIntroduction to Microsoft Enterprise Mobility + Security
Introduction to Microsoft Enterprise Mobility + Security
 
Learn how to protect against and recover from data breaches in Office 365
Learn how to protect against and recover from data breaches in Office 365Learn how to protect against and recover from data breaches in Office 365
Learn how to protect against and recover from data breaches in Office 365
 
Information security in office 365 a shared responsibility - antonio maio
Information security in office 365   a shared responsibility - antonio maioInformation security in office 365   a shared responsibility - antonio maio
Information security in office 365 a shared responsibility - antonio maio
 
A Practical Guide Information Governance with Microsoft SharePoint 2013
A Practical Guide Information Governance with Microsoft SharePoint 2013A Practical Guide Information Governance with Microsoft SharePoint 2013
A Practical Guide Information Governance with Microsoft SharePoint 2013
 
Keeping SharePoint Always On
Keeping SharePoint Always OnKeeping SharePoint Always On
Keeping SharePoint Always On
 
How Claims is Changing the Way We Authenticate and Authorize in SharePoint
How Claims is Changing the Way We Authenticate and Authorize in SharePointHow Claims is Changing the Way We Authenticate and Authorize in SharePoint
How Claims is Changing the Way We Authenticate and Authorize in SharePoint
 
SPTechCon Boston 2013 - Introduction to Security in Microsoft Sharepoint 2013...
SPTechCon Boston 2013 - Introduction to Security in Microsoft Sharepoint 2013...SPTechCon Boston 2013 - Introduction to Security in Microsoft Sharepoint 2013...
SPTechCon Boston 2013 - Introduction to Security in Microsoft Sharepoint 2013...
 
Best Practices for Security in Microsoft SharePoint 2013
Best Practices for Security in Microsoft SharePoint 2013Best Practices for Security in Microsoft SharePoint 2013
Best Practices for Security in Microsoft SharePoint 2013
 
Intro to Develop and Deploy Apps for Microsoft SharePoint and Office 2013
Intro to Develop and Deploy Apps for Microsoft SharePoint and Office 2013Intro to Develop and Deploy Apps for Microsoft SharePoint and Office 2013
Intro to Develop and Deploy Apps for Microsoft SharePoint and Office 2013
 
SharePoint Governance: Impacts of Moving to the Cloud
SharePoint Governance: Impacts of Moving to the CloudSharePoint Governance: Impacts of Moving to the Cloud
SharePoint Governance: Impacts of Moving to the Cloud
 
Share point security 101 sps-ottawa 2012 - antonio maio
Share point security 101   sps-ottawa 2012 - antonio maioShare point security 101   sps-ottawa 2012 - antonio maio
Share point security 101 sps-ottawa 2012 - antonio maio
 
Webinar: Take Control of SharePoint Security
Webinar: Take Control of SharePoint SecurityWebinar: Take Control of SharePoint Security
Webinar: Take Control of SharePoint Security
 
SharePoint Saturday Toronto July 2012 - Antonio Maio
SharePoint Saturday Toronto July 2012 - Antonio MaioSharePoint Saturday Toronto July 2012 - Antonio Maio
SharePoint Saturday Toronto July 2012 - Antonio Maio
 

Kürzlich hochgeladen

What’s New in VictoriaMetrics: Q1 2024 Updates
What’s New in VictoriaMetrics: Q1 2024 UpdatesWhat’s New in VictoriaMetrics: Q1 2024 Updates
What’s New in VictoriaMetrics: Q1 2024 UpdatesVictoriaMetrics
 
Ronisha Informatics Private Limited Catalogue
Ronisha Informatics Private Limited CatalogueRonisha Informatics Private Limited Catalogue
Ronisha Informatics Private Limited Catalogueitservices996
 
VictoriaMetrics Q1 Meet Up '24 - Community & News Update
VictoriaMetrics Q1 Meet Up '24 - Community & News UpdateVictoriaMetrics Q1 Meet Up '24 - Community & News Update
VictoriaMetrics Q1 Meet Up '24 - Community & News UpdateVictoriaMetrics
 
Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...
Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...
Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...Cizo Technology Services
 
OpenChain Education Work Group Monthly Meeting - 2024-04-10 - Full Recording
OpenChain Education Work Group Monthly Meeting - 2024-04-10 - Full RecordingOpenChain Education Work Group Monthly Meeting - 2024-04-10 - Full Recording
OpenChain Education Work Group Monthly Meeting - 2024-04-10 - Full RecordingShane Coughlan
 
Comparing Linux OS Image Update Models - EOSS 2024.pdf
Comparing Linux OS Image Update Models - EOSS 2024.pdfComparing Linux OS Image Update Models - EOSS 2024.pdf
Comparing Linux OS Image Update Models - EOSS 2024.pdfDrew Moseley
 
Powering Real-Time Decisions with Continuous Data Streams
Powering Real-Time Decisions with Continuous Data StreamsPowering Real-Time Decisions with Continuous Data Streams
Powering Real-Time Decisions with Continuous Data StreamsSafe Software
 
Catch the Wave: SAP Event-Driven and Data Streaming for the Intelligence Ente...
Catch the Wave: SAP Event-Driven and Data Streaming for the Intelligence Ente...Catch the Wave: SAP Event-Driven and Data Streaming for the Intelligence Ente...
Catch the Wave: SAP Event-Driven and Data Streaming for the Intelligence Ente...confluent
 
OpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full Recording
OpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full RecordingOpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full Recording
OpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full RecordingShane Coughlan
 
Machine Learning Software Engineering Patterns and Their Engineering
Machine Learning Software Engineering Patterns and Their EngineeringMachine Learning Software Engineering Patterns and Their Engineering
Machine Learning Software Engineering Patterns and Their EngineeringHironori Washizaki
 
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...OnePlan Solutions
 
Not a Kubernetes fan? The state of PaaS in 2024
Not a Kubernetes fan? The state of PaaS in 2024Not a Kubernetes fan? The state of PaaS in 2024
Not a Kubernetes fan? The state of PaaS in 2024Anthony Dahanne
 
Strategies for using alternative queries to mitigate zero results
Strategies for using alternative queries to mitigate zero resultsStrategies for using alternative queries to mitigate zero results
Strategies for using alternative queries to mitigate zero resultsJean Silva
 
Enhancing Supply Chain Visibility with Cargo Cloud Solutions.pdf
Enhancing Supply Chain Visibility with Cargo Cloud Solutions.pdfEnhancing Supply Chain Visibility with Cargo Cloud Solutions.pdf
Enhancing Supply Chain Visibility with Cargo Cloud Solutions.pdfRTS corp
 
Understanding Flamingo - DeepMind's VLM Architecture
Understanding Flamingo - DeepMind's VLM ArchitectureUnderstanding Flamingo - DeepMind's VLM Architecture
Understanding Flamingo - DeepMind's VLM Architecturerahul_net
 
SensoDat: Simulation-based Sensor Dataset of Self-driving Cars
SensoDat: Simulation-based Sensor Dataset of Self-driving CarsSensoDat: Simulation-based Sensor Dataset of Self-driving Cars
SensoDat: Simulation-based Sensor Dataset of Self-driving CarsChristian Birchler
 
eSoftTools IMAP Backup Software and migration tools
eSoftTools IMAP Backup Software and migration toolseSoftTools IMAP Backup Software and migration tools
eSoftTools IMAP Backup Software and migration toolsosttopstonverter
 
Simplifying Microservices & Apps - The art of effortless development - Meetup...
Simplifying Microservices & Apps - The art of effortless development - Meetup...Simplifying Microservices & Apps - The art of effortless development - Meetup...
Simplifying Microservices & Apps - The art of effortless development - Meetup...Rob Geurden
 
Salesforce Implementation Services PPT By ABSYZ
Salesforce Implementation Services PPT By ABSYZSalesforce Implementation Services PPT By ABSYZ
Salesforce Implementation Services PPT By ABSYZABSYZ Inc
 
Sending Calendar Invites on SES and Calendarsnack.pdf
Sending Calendar Invites on SES and Calendarsnack.pdfSending Calendar Invites on SES and Calendarsnack.pdf
Sending Calendar Invites on SES and Calendarsnack.pdf31events.com
 

Kürzlich hochgeladen (20)

What’s New in VictoriaMetrics: Q1 2024 Updates
What’s New in VictoriaMetrics: Q1 2024 UpdatesWhat’s New in VictoriaMetrics: Q1 2024 Updates
What’s New in VictoriaMetrics: Q1 2024 Updates
 
Ronisha Informatics Private Limited Catalogue
Ronisha Informatics Private Limited CatalogueRonisha Informatics Private Limited Catalogue
Ronisha Informatics Private Limited Catalogue
 
VictoriaMetrics Q1 Meet Up '24 - Community & News Update
VictoriaMetrics Q1 Meet Up '24 - Community & News UpdateVictoriaMetrics Q1 Meet Up '24 - Community & News Update
VictoriaMetrics Q1 Meet Up '24 - Community & News Update
 
Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...
Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...
Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...
 
OpenChain Education Work Group Monthly Meeting - 2024-04-10 - Full Recording
OpenChain Education Work Group Monthly Meeting - 2024-04-10 - Full RecordingOpenChain Education Work Group Monthly Meeting - 2024-04-10 - Full Recording
OpenChain Education Work Group Monthly Meeting - 2024-04-10 - Full Recording
 
Comparing Linux OS Image Update Models - EOSS 2024.pdf
Comparing Linux OS Image Update Models - EOSS 2024.pdfComparing Linux OS Image Update Models - EOSS 2024.pdf
Comparing Linux OS Image Update Models - EOSS 2024.pdf
 
Powering Real-Time Decisions with Continuous Data Streams
Powering Real-Time Decisions with Continuous Data StreamsPowering Real-Time Decisions with Continuous Data Streams
Powering Real-Time Decisions with Continuous Data Streams
 
Catch the Wave: SAP Event-Driven and Data Streaming for the Intelligence Ente...
Catch the Wave: SAP Event-Driven and Data Streaming for the Intelligence Ente...Catch the Wave: SAP Event-Driven and Data Streaming for the Intelligence Ente...
Catch the Wave: SAP Event-Driven and Data Streaming for the Intelligence Ente...
 
OpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full Recording
OpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full RecordingOpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full Recording
OpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full Recording
 
Machine Learning Software Engineering Patterns and Their Engineering
Machine Learning Software Engineering Patterns and Their EngineeringMachine Learning Software Engineering Patterns and Their Engineering
Machine Learning Software Engineering Patterns and Their Engineering
 
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...
 
Not a Kubernetes fan? The state of PaaS in 2024
Not a Kubernetes fan? The state of PaaS in 2024Not a Kubernetes fan? The state of PaaS in 2024
Not a Kubernetes fan? The state of PaaS in 2024
 
Strategies for using alternative queries to mitigate zero results
Strategies for using alternative queries to mitigate zero resultsStrategies for using alternative queries to mitigate zero results
Strategies for using alternative queries to mitigate zero results
 
Enhancing Supply Chain Visibility with Cargo Cloud Solutions.pdf
Enhancing Supply Chain Visibility with Cargo Cloud Solutions.pdfEnhancing Supply Chain Visibility with Cargo Cloud Solutions.pdf
Enhancing Supply Chain Visibility with Cargo Cloud Solutions.pdf
 
Understanding Flamingo - DeepMind's VLM Architecture
Understanding Flamingo - DeepMind's VLM ArchitectureUnderstanding Flamingo - DeepMind's VLM Architecture
Understanding Flamingo - DeepMind's VLM Architecture
 
SensoDat: Simulation-based Sensor Dataset of Self-driving Cars
SensoDat: Simulation-based Sensor Dataset of Self-driving CarsSensoDat: Simulation-based Sensor Dataset of Self-driving Cars
SensoDat: Simulation-based Sensor Dataset of Self-driving Cars
 
eSoftTools IMAP Backup Software and migration tools
eSoftTools IMAP Backup Software and migration toolseSoftTools IMAP Backup Software and migration tools
eSoftTools IMAP Backup Software and migration tools
 
Simplifying Microservices & Apps - The art of effortless development - Meetup...
Simplifying Microservices & Apps - The art of effortless development - Meetup...Simplifying Microservices & Apps - The art of effortless development - Meetup...
Simplifying Microservices & Apps - The art of effortless development - Meetup...
 
Salesforce Implementation Services PPT By ABSYZ
Salesforce Implementation Services PPT By ABSYZSalesforce Implementation Services PPT By ABSYZ
Salesforce Implementation Services PPT By ABSYZ
 
Sending Calendar Invites on SES and Calendarsnack.pdf
Sending Calendar Invites on SES and Calendarsnack.pdfSending Calendar Invites on SES and Calendarsnack.pdf
Sending Calendar Invites on SES and Calendarsnack.pdf
 

Hybrid Identity Management with SharePoint and Office 365 - Antonio Maio

  • 1. Antonio Maio Protiviti - Senior SharePoint Architect & Senior Manager Microsoft SharePoint Server MVP Hybrid Identity Management with SharePoint and Office 365 Email: Antonio.maio@protiviti.com Blog: www.trustsharepoint.com Slide share: http://www.slideshare.net/AntonioMaio2 Twitter: @AntonioMaio2
  • 2. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. About Protiviti INDIA (3) Protiviti (www.protiviti.com) is a global consulting firm that helps companies solve problems in finance, technology, operations, governance, risk and internal audit. Through our network of more than 70 offices in over 20 countries, we have served more than 35 percent of FORTUNE® 1000 and Global 500 companies. We also work with smaller, growing companies, including those looking to go public, as well as with government agencies. Protiviti is a wholly owned subsidiary of Robert Half International Inc. (NYSE: RHI). Founded in 1948, Robert Half International is a member of the S&P 500 index. • 2,500+ professionals • 1,000+ clients • 70+ offices • Over 20 countries in the Americas, Europe and Asia-Pacific Protiviti is one of the fastest growing consulting firms worldwide. Our revenues have increased from US $15 million in 2002, to US $423.8 million in 2011.
  • 3. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Securing Identities and the Hybrid Cloud
  • 4. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Why Hybrid?
  • 5. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Identity Models for Office 365 Cloud Identity Synchronized Identity Federated Identity
  • 6. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Cloud Identity Model • No on-premises directory • Very small number of users • On-premises directory is undergoing significant restructuring • Trialing Office 365
  • 7. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Synchronized Identity Model
  • 8. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Federated Identity Model
  • 9. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Selecting an Identity Model I need to… Synchronized Identity Federated Identity (Directory Sync with Single Sign-On) Sync new user, contact, groups created in on-premises AD to cloud automatically Sync incremental updates to existing accounts in on-premises AD to cloud automatically Set up my tenant for Office 365 hybrid scenarios Limited Support Enable users to sign in to cloud services using on-premises password Control password policies from on-premises Active Directory Enable cloud-based multi-factor authentication solutions Enable on-premises multi-factor authentication solutions Ensure user authentications occur in on-premises Active Directory Implement single sign-on using corporate credentials Customize the user Sign-In page * Limit access to cloud services based on the location, client type or Exchange endpoint of the client ? * Available in Basic or Premium Edition of Azure Active Directory. See Chris Goosen’s Post for details on how to brand your Office 365 sign in page.: http://blog.enowsoftware.com/solutions- engine/bid/187358/Add-Custom-Branding-to-Your-Office-365-Sign-in-Page .
  • 10. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. History Lesson • DirSync • Azure Active Directory Sync (AAD Sync) – Introduced Multi-Forest Support • Azure ADConnect (GA June 24, 2015) – Replaces both DirSync and AADSync
  • 11. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Azure ADConnect • New deployment & configuration tool for quickly connecting on premise identities to the cloud • Express Settings: Easily connect a single AD forest (in minutes) • More options: Specify a group or OU to sync only specific identities • Built in Upgrade: Easily upgrade existing DirSync or AAD Sync Available now: http://go.microsoft.com/fwlink/?LinkId=615771 • Includes Azure ADConnect Health • Monitors ADFS Servers (health, performance, login activity) • Only available for Azure AD Premium Edition
  • 12. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Azure ADConnect – Configuration Options • Synchronize multiple AD forests • User self-service password reset in the cloud with write-back to on premises AD • Provisioning from the cloud with user write back to on premises AD • Write back of “Groups in Office 365” to on premises distribution groups in a forest with Exchange • Device write back so on-premises access control policies in ADFS can recognize devices registered with Azure AD (includes support for Azure AD Join in Windows 10) • Sync custom AD attributes to your Azure AD tenant - consume by your cloud apps • Configure password sync or federation – selecting federation provides a simplified ADFS deployment • Other options…
  • 13. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Azure ADConnect Health • Email Notifications for Critical Alerts – Events, configuration information, transactions, performance data • Graphs – Usage Insights – Ex. Login Activity (number of successful logins, failed logins, trends) – Available when enable auditing on your ADFS servers – Based on audits generated when user's login and tokens are generated for applications • Performance monitoring across multiple servers – token request counters, processor, memory, latency
  • 14. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Topology – Directory Synchronization AD DCAzure ADConnect DMZ Firewall Internet Firewall
  • 15. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Topology – Federated Identity AD DCAzure ADConnect DMZ Firewall Internet Firewall ADFS ADFS Proxy
  • 16. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Topology – Federated Identity (High Availability) AD DC 1Azure ADConnect DMZ Firewall Internet Firewall Azure ADConnect (Staging Mode) ADFS 1 ADFS Proxy 1 ADFS Proxy 2 ADFS 2AD DC 2 Load Balancer
  • 17. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect 1. Prepare for Directory Synchronization • Prerequisites, Permissions, Understand Limits • Alternate UPN Suffix for .local Domain • Clean Up UPNs & ProxyAddresses in AD (use Microsoft Office 365 IdFix) 2. Activate Directory Synchronization • Register your Domain with Office 365 & Validate Ownership • Activate Directory Sync in Office 365 > Admin > Users 3. Setup ADConnect on your Directory Synchronization Server • Provide Office 365 Service Admin Credentials • Provide on premise AD Enterprise Domain Admin Credentials 4. Synchronize Directories 5. Activate Users & Assign Office 365 Licenses 6. Manage Directory Synchronization
  • 18. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. DEMONSTRATION INSTALLING & CONFIGURING AZURE AD CONNECT
  • 19. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Assign Licenses/Location via Powershell • Office 365 Admin GUI allows for bulk assignment (limit 25 users at a time) • Useful Powershell Commands for bulk license assignment Connect-MsolService Connect to your Office 365 Service. Get-Commmand -Module MSOnline Display available Powershell commands . Get-MsolUser Display list of users currently within your Office 365 tenant. Get-MsolUser –UnlicensedUsersOnly Display only list of users in your Office 365 tenant which do not have a license. Get-MsolAccountSku Displays your Office 365 tenant license SKU. Use this when assigning a license. Set-MsolUser -UserPrincipalName “<user’s upn>” -UsageLocation "US“ Set the location for a specific user by specifying the user principal name. Set-MsolUserLicense -UserPrincipalName " <user’s upn> " -AddLicenses “<your license SKU“ Set a license for the specified user. Use the SKU displayed by the command above. • Combine Powershell commands to assign licenses to all unlicensed users Get-MsolUser -UnlicensedUsersOnly | Set-Msoluser - UsageLocation "US“ Get-MsolUser -UnlicensedUsersOnly | Set-MsolUserLicense -AddLicenses “<your license SKU>"
  • 20. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. DEMONSTRATION ACTIVATING USERS IN OFFICE 365 WITH POWERSHELL
  • 21. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Configuring Identity Federation 1. Prepare for Single Sign On • Prerequisites, Prepare Active Directory • Prepare Network infrastructure for Federation servers 2. Setup the On Premise Active Directory Federation Services (ADFS) • Set up Windows PowerShell for SSO with AD FS • Set up trust between AD FS and Azure AD 3. Setup Directory Synchronization with Azure ADConnect 4. Verify & Manage Single Sign On
  • 22. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Overall Benefits • Reduced administration costs Leveraging your already existing on-premises user and group accounts • Improved productivity Significantly reduce the amount of time it takes to make cloud based services accessible • Increased security Ensures that only appropriate users have access to your corporate assets. Retain strict control over user identities and related policies through on premise AD. • Enable Hybrid Scenarios Enjoy the benefits of the cloud combined with your existing infrastructure through robust hybrid configuration scenarios
  • 23. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Step by Step Procedures Please see 2 blog posts: • Part 1: http://sharepoint.protiviti.com/blog/Lists/Posts/Post.aspx?ID=142 • Part 2: http://sharepoint.protiviti.com/blog/Lists/Posts/Post.aspx?ID=165 This deck will be posted to my blog: www.trustsharepoint.com *Note: these posts refer to DirSync in several cases, but the activities for cleaning up AD and preparing for Identity Synchronization or Identity Federation are still applicable with Azure AD Connect.
  • 24. Antonio Maio Protiviti - Senior SharePoint Architect & Senior Manager Microsoft SharePoint Server MVP Thank You – Questions & Answer Email: Antonio.maio@protiviti.com Blog: www.trustsharepoint.com Slide share: http://www.slideshare.net/AntonioMaio2 Twitter: @AntonioMaio2
  • 25. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Appendix
  • 26. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect 1. Prepare for Directory Synchronization • Prerequisites, Permissions, Understand Limits • Alternate UPN Suffix for .local Domain • Clean Up UPNs & ProxyAddresses in AD (use Microsoft Office 365 IdFix) 2. Activate Directory Synchronization • Register your Domain with Office 365 & Validate Ownership • Activate Directory Sync in Office 365 > Admin > Users 3. Setup ADConnect on your Directory Synchronization Server • Provide Office 365 Service Admin Credentials • Provide on premise AD Enterprise Domain Admin Credentials 4. Synchronize Directories 5. Activate Users & Assign Office 365 Licenses 6. Manage Directory Synchronization
  • 27. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. • Alternate UPN Suffix for .local Domain Steps - Configuring Azure ADConnect
  • 28. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect • Alternate UPN Suffix for .local Domain
  • 29. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect • Clean up Active Directory – set UPN for each user identity
  • 30. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect • Clean up Active Directory – set proxyAddresses each user identity
  • 31. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect • Clean up Active Directory – set proxyAddresses each user identity
  • 32. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect 1. Prepare for Directory Synchronization • Prerequisites, Permissions, Understand Limits • Alternate UPN Suffix for .local Domain • Clean Up UPNs & ProxyAddresses in AD (use Microsoft Office 365 IdFix) 2. Activate Directory Synchronization • Register your Domain with Office 365 & Validate Ownership • Activate Directory Sync in Office 365 > Admin > Users 3. Setup ADConnect on your Directory Synchronization Server • Provide Office 365 Service Admin Credentials • Provide on premise AD Enterprise Domain Admin Credentials 4. Synchronize Directories 5. Activate Users & Assign Office 365 Licenses 6. Manage Directory Synchronization
  • 33. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect • Register Domain with Office 365 & Validate Ownership
  • 34. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect • Register Domain with Office 365 & Validate Ownership
  • 35. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect • Register Domain with Office 365 & Validate Ownership
  • 36. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect • Register Domain with Office 365 & Validate Ownership
  • 37. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect • Register Domain with Office 365 & Validate Ownership
  • 38. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect • Activate Directory Synchronization
  • 39. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect • Activate Directory Synchronization
  • 40. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect 1. Prepare for Directory Synchronization • Prerequisites, Permissions, Understand Limits • Alternate UPN Suffix for .local Domain • Clean Up UPNs & ProxyAddresses in AD (use Microsoft Office 365 IdFix) 2. Activate Directory Synchronization • Register your Domain with Office 365 & Validate Ownership • Activate Directory Sync in Office 365 > Admin > Users 3. Setup ADConnect on your Directory Synchronization Server • Provide Office 365 Service Admin Credentials • Provide on premise AD Enterprise Domain Admin Credentials 4. Synchronize Directories 5. Activate Users & Assign Office 365 Licenses 6. Manage Directory Synchronization
  • 41. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect • Deploying and Configuring Azure AD Connect – Express Settings
  • 42. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect 1. Prepare for Directory Synchronization • Prerequisites, Permissions, Understand Limits • Alternate UPN Suffix for .local Domain • Clean Up UPNs & ProxyAddresses in AD (use Microsoft Office 365 IdFix) 2. Activate Directory Synchronization • Register your Domain with Office 365 & Validate Ownership • Activate Directory Sync in Office 365 > Admin > Users 3. Setup ADConnect on your Directory Synchronization Server • Provide Office 365 Service Admin Credentials • Provide on premise AD Enterprise Domain Admin Credentials 4. Synchronize Directories 5. Activate Users & Assign Office 365 Licenses 6. Manage Directory Synchronization
  • 43. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect • After users & groups are synchronized
  • 44. © 2014 Protiviti Consulting Private Ltd. An Equal Opportunity Employer. CONFIDENTIAL: This document is for internal use only and may not be copied nor distributed to another third party. Steps - Configuring Azure ADConnect 1. Prepare for Directory Synchronization • Prerequisites, Permissions, Understand Limits • Alternate UPN Suffix for .local Domain • Clean Up UPNs & ProxyAddresses in AD (use Microsoft Office 365 IdFix) 2. Activate Directory Synchronization • Register your Domain with Office 365 & Validate Ownership • Activate Directory Sync in Office 365 > Admin > Users 3. Setup ADConnect on your Directory Synchronization Server • Provide Office 365 Service Admin Credentials • Provide on premise AD Enterprise Domain Admin Credentials 4. Synchronize Directories 5. Activate Users & Assign Office 365 Licenses 6. Manage Directory Synchronization