
Explore Azure Active Directory and on-premises options, configure custom domains, manage users and groups via portal efficiently. Enable multi-factor authentication and single sign-on for cloud and on-prem resources.
Compare on-premises Active Directory with Azure Active Directory and Azure AD Domain Services. Azure Active Directory handles cloud app authentication, while traditional Active Directory offers hierarchical structure and policy delegation.
Learn to add custom domains to an Azure Active Directory, verify ownership via DNS records, and set a custom domain as the primary login domain for users.
Manage Azure Active Directory users and groups in the portal by creating new users, forming payroll group, and granting access to resources such as Office 365 and SharePoint.
Learn to manage Azure Active Directory users and groups with PowerShell, including connecting to the MSOL service, creating users and groups, and bulk importing from CSV.
Create and manage multiple Azure Active Directory environments for production and testing, switch directories in the portal, and add users, groups, and guest accounts for testing.
Grant access to resources by adding applications to Azure Active Directory, enabling single sign-on for thousands of SaaS apps, and centralizing management, provisioning, and usage reporting.
Add and assign software as a service applications in Azure Active Directory, configure access and single sign-on, and manage user and group assignments through enterprise applications and my apps portal.
Explore Azure Active Directory version tiers from free to premium, including user limits, group and application access, self-service password reset, and multi-factor authentication, with optional three-tier-plus configurations.
Explore how hybrid active directory enables flexible authentication by deploying a domain controller in Azure, synchronizing on-premises and cloud identities, and supporting Kerberos, NTLM, and federated token-based single sign-on.
Deploy a domain controller to Azure as an IaaS resource, disable disk write caching, configure site-to-site VPN or express route, and ensure a cloud global catalog.
Synchronize on-premises directory with Azure Active Directory to provision users, groups, and contacts in cloud, filter by domain, OU, attributes, and enable single sign-on with ADFS via Azure AD Connect.
Explore prerequisites for Azure AD Connect directory synchronization, including domain controller versions and on-premises Active Directory cleanup to ensure valid UPNs, with IdFix and ADModify.NET for safe bulk updates.
Learn to install and configure Azure AD Connect, choose custom settings, connect an on-premises directory, verify domains and UPNs, and enable scheduled delta and initial synchronizations.
Modify Azure Active Directory synchronization by using the configuration wizard and synchronization service to customize connectors, partitions, and rules, including attribute-based synchronization and policy adjustments.
Establish a federated trust between on-premises Active Directory and the Microsoft online domain to enable single sign-on. Exchange metadata to form the trust and issue claims-based tokens for cloud access.
Explore how federated authentication with online services enables single sign-on using on-premises domain credentials, Active Directory, and the Microsoft Online Federation service to issue claims-based tokens.
Identify prerequisites for active directory federated services, including Azure AD Connect, directory synchronization, token-based authentication, and SSL certificates. Ensure hardware minimums, database options, and domain functional level alignment.
Install and configure Active Directory Federation Services on a member server, create the first federation server in a farm, and prepare for a two-server high-availability setup with a trusted certificate.
Learn to set up an Active Directory Federation Services proxy with the Web Application Proxy, enabling external users to obtain tokens via the DMZ and firewall.
Convert a domain to a federated domain in Azure Active Directory using PowerShell, enabling on-premises authentication for cloud resources after installing Active Directory Federation Services and a proxy.
Enable pass-through authentication in Azure Active Directory to deliver single sign-on without deploying an AD FS infrastructure. Azure AD Connect routes on-premises credential checks and caches credentials for domain-joined devices.
Learn seamless single sign-on with Azure Active Directory, allowing a one-time authentication to access cloud resources via password sync, and relate it to federation services and Azure AD Connect tool.
Enable pass-through authentication with seamless single sign-on using Azure AD Connect by converting the federated domain to standard, configuring for on-premises authentication and cloud-only admin accounts.
Review on-premises and cloud-based Azure Active Directory, add vanity domains, manage users and groups via portal or PowerShell, and enable single sign-on to SaaS applications.
In this course, students will gain an understanding of directory service options, how to use a custom domain, how to manage users and groups, as well as how to use multi-factor authentication. They will also look at how to work with application access, how to add and access applications, and how to use a hybrid Azure Active Directory. They will also explore how to extend and deploy AD to the cloud, how to prepare for synchronization, install Azure AD Connect, and manage directory synchronization. In addition, students will understand ADFS, learn how to install AFDS, and how to convert a domain to Federated.
Last updated May 2018