相关文章推荐
深情的煎鸡蛋  ·  the value of the ...·  2 周前    · 
星星上的热带鱼  ·  VS ...·  1 年前    · 
Get to know Azure Global infrastructure Cloud economics Customer enablement Customer stories Microsoft Azure Data Manager for Agriculture Financial services Gaming Government Healthcare Manufacturing Media and entertainment Retail Reference architectures Resources for accelerating growth Azure Marketplace Customer enablement Azure Partner Zone Azure technology partners Publish your app
"We made our lives easier by adopting Azure Active Directory—we've saved time and money, improved the employee experience, and enhanced the security of our entire SaaS ecosystem."
Mark Lewis, Infrastructure Architect, ASOS
"We had four weeks to accelerate the university's remote working solution.… Using Azure AD played an enormous part in achieving this. It's a much better user experience and so much more powerful in terms of what we can do with security."
Craig Churchward, Technical Specialist, Durham University
"Implementing Azure AD resulted in a central identity repository for each of our employees, contractors, and guests that is available globally."
Paul Ryan, Chief Information Officer, Kohler
"Features like Azure Active Directory Application Proxy were just phenomenal in terms of what we could do to secure the remote workforce. We were on the journey. We just accelerated the growth."
Arshaad Smile, Head of Office 365 and Cloud Security, Standard Bank of South Africa
"Enabling a Zero Trust approach with the strong authentication of Azure Active Directory and endpoint management of Microsoft Endpoint Manager ensures the high level of security and compliance DCCT requires."
Jake Wright, Senior Customer Journey Specialist, Bam Boom Cloud

Identity and access management best practices

What are managed identities for Azure resources?

Azure AD Domain Services

Conditional access is an Azure AD capability that lets you automate access controls based on certain user conditions. Conditional access policies are enforced after the first-factor authentication has been completed. It's not intended as a first-line defense for scenarios like denial-of-service (DoS) attacks, but it uses signals from these events to determine access.

Azure AD is the built-in solution for managing identities in Microsoft 365 and Azure . Add and configure any application with Azure AD to centralize identity and access management and better secure your environment. Configure single sign-on and automated provisioning depending on your application’s capabilities and your preferences. Learn how to configure single sign-on for a non-gallery application and how to use SCIM to automatically provision users and groups .

Yes. Azure AD supports several standardized protocols for authentication and authorization, including SAML 2.0, OpenID Connect, OAuth 2.0, and WS-Federation. It also supports password vaulting and automated sign-in capabilities for apps that support only forms-based authentication. Learn more about authentication scenarios and protocols, and single sign-on for applications .