Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
Mastering and Implementing Azure Active Directory
Rating: 4.0 out of 5(72 ratings)
1,898 students

Mastering and Implementing Azure Active Directory

Learn End to end deployment of identities in the cloud
Last updated 9/2018
English
English [Auto],

What you'll learn

  • Students will have proficiency in features / Services offered by Microsoft Azure Active Directory
  • Get a deeper insight of connectivity, replication , architecture and security aspects of Azure active directory
  • Understand Multi Factor authentication and set it up live with hands on labs
  • Synchronize on premise Active directory to Azure Active Directory

Course content

1 section31 lectures1h 27m total length
  • What to Expect in this course?1:32

    Explore what Azure Active Directory is, how it compares with native Active Directory, differences between editions, and security features like risk design, multi-factor authentication, auditing, and compliance, on-premises cloud sync.

  • What is Active Directory?2:30

    Explore how Active Directory centralizes users, groups, computers, and organizational units with group policy for centralized control, domain controllers that handle authentication, and concepts like forest, domain, and sites.

  • What is Azure Active Directory2:06

    Explore how Azure Active Directory provides a cloud-based, multi-tenant directory for identity and access management, offering single sign-on, on-premises synchronization, and reliable multi-datacenter availability across thousands of cloud apps.

  • Recap - Pictorial Representation1:27

    Discover how on-premise Active Directory across multiple data centers synchronizes with Azure Active Directory to provide single sign-on to cloud apps like Office, Salesforce, and Dropbox.

  • Azure AD Editions1:35

    Compare Azure Active Directory editions—free, premium one, and premium two—and learn which features like audience synchronization, multi-factor authentication, identity protection, and identity management are included or restricted.

  • Azure Active Directory Dashboard Overview2:01

    Explore the azure active directory dashboard, identify your domain name, and navigate quick links to create users, groups, or enterprise applications while reviewing recent changes and on-premise synchronization options.

  • Creating the Global Admin in Azure AD3:52

    Create a global admin in Azure AD by adding a new user with a domain user principal name, assign global admin rights, and enforce a password change on first login.

  • Audit Azure AD objects - I3:14

    Explore Azure AD auditing to track user and group activities, including account changes, login attempts, and password updates, with request IDs, IP, device, and timestamps for forensics and compliance.

  • Audit Azure AD objects - II2:09

    Audit azure ad objects by exporting event sets and linking to Power BI for diagnostics and visualizations, with diagnostic exports archived to storage account and governance-aligned retention.

  • AD Connect : Features0:55

    Azure AD Connect synchronizes on-premises users to Azure AD, creating a common identity for cloud-based applications. Features include password hash sync, password writeback, device writeback, and prevention of accidental deletes.

  • AD Connect : Features : Filtering1:14

    Learn how AD Connect filtering limits synchronization to selected domains and objects with specific attributes, preventing a big-bang sync of all users, groups, and devices to Azure AD.

  • AD Connect : Features : Password Hash Sync3:05

    Azure AD Connect password hash sync synchronizes on-prem password hashes to Azure, enabling sign-in to SaaS apps with a single password and reducing helpdesk costs.

  • AD Connect : Feature : Password Write Back0:47

    Activate password write back with AD Connect to synchronize password hashes from on-premises to Azure AD and back, enabling cloud password resets while applying on-premises password policies.

  • AD Connect : Feature : Device Write Back0:31

    Enable device write back to strengthen security by granting application access only to trusted devices. Registered devices write back to Active Directory to optimize authentication and access control.

  • AD Connect Feature - Prevent Accidental deletes1:40

    Learn how the AD Connect feature prevents accidental deletes by defaulting to 500 objects, stopping exports beyond the limit, and notifying admins via email and the Synchronization Service Manager UI.

  • AD Connect : Feature : Automatic Upgrades0:51

    Automatically upgrades keep the AD Connect binary up to date with the latest release, defaults enabled for install, and let you toggle upgrade behavior as needed.

  • Download AD Connect tool3:04

    Learn to download and install Azure AD Connect to synchronize on premise Active Directory users to Azure Active Directory, including handling domain controllers and installation steps in a test environment.

  • Install AD Connect tool - Express Settings4:20

    Install the AD Connect tool using express settings, connect to the domain controller with global admin credentials, and synchronize on-premises users to Azure Active Directory.

  • Verify AD SYNC- b/w On Prem and Azure AD1:11

    Verify that on-premise user accounts synchronize to Azure AD by checking the console's user section for on-prem sources and the on-premises data synchronization tool service account.

  • On-Premises Directory Synchronization Service Account4:09

    Identify the on-premises directory synchronization service accounts for azure ad connect, with a special role, tied to the domain controller, a password that never expires, and a 20-account limit.

  • What is Multi Factor Authentication ( MFA ) ?3:48

    Describe multi-factor authentication in Azure Active Directory, emphasizing at least two factors from knowledge, possession, biometrics, location, or behavior to protect access.

  • Implementing MFA for AD Users7:06

    Enable multi-factor authentication for selected Active Directory users, choose authentication forms, and verify access to enterprise apps while branding the login experience.

  • Company Branding3:33

    Learn how to configure company branding in Azure Active Directory, including banner logos, background images, sign-in page customization, and legal disclaimers for external users.

  • Publishing Enterprise Applications - I2:05

    Publish enterprise applications from the enterprise applications gallery in Azure Active Directory, add new applications to publish to users, and refresh the list to enable access for users.

  • Publishing Enterprise Applications - II1:53

    Publish the Dropbox for business enterprise application to synchronized on-premise users by selecting users or groups in enterprise applications, then grant access based on owners and permissions.

  • Publishing Enterprise Applications - III1:19

    Publish enterprise applications to users in Azure Active Directory and verify access for the Dropbox app, then publish customer web apps to users beyond the marketplace.

  • Publishing Custom Applications from WebApps3:41

    Publish custom applications from webapps using Azure Active Directory enterprise applications by registering the app, adding it to application registrations, and publishing to users with branding.

  • Custom Domains3:07

    Learn how to add and verify custom domains in Azure Active Directory, enabling users to sign in with company domains by configuring TXT or CNAME DNS records and allowing propagation.

  • Conditional Access4:29

    Explore conditional access in Azure Active Directory, balancing security and productivity by enabling automated access control decisions based on sign-in risk, network location, device management, and app types.

  • Conditional Access - LAB10:23

    Explore conditional access in practice by creating a lab policy that grants or denies Azure AD access based on user, location, device, and MFA requirements.

  • Risky Sign-in's and Audit4:12

    Explore how conditional access auditing tracks risky sign-ins and assignments, analyzes risk events by user, IP, and location, and enforces actions such as whitelisting and multi-factor authentication failures.

Requirements

  • Basic Understanding of Active Directory
  • Understanding of Azure Services
  • Passionate to learn cutting edge technologies
  • Zest to do the labs and research as we progress through the course.
  • Microsoft Azure account to do the labs

Description

In this course, students will get an understanding of various features available in Azure Active Directory. There are theory sessions followed by practical ones. There will be live demonstrations as we progress through the class. There are numerous new features that Azure Active Directory as on today. You will learn various aspects like Azure AD redundancy , security in Azure AD , geographic replication, metrics and monitoring options , risky sign on's , MFA , Sync on prem AD to Azure AD, hosting SAAS applications to users , Self Service Password reset deployment Etc. You will also learn to audit the Azure Active Directory and perform a penetration test on Azure AD .

You will see more content in near future . This will include managing Azure AD with Powershell and Azure CLI


As cloud is a moving target , I am sure there will be new features offered by Microsoft . I will keep this course updated to ensure that you get the latest and greatest stuff in this course at all times.

Happy Learning

Who this course is for:

  • Anyone willing to build career in cloud platforms specifically Azure Active Directory