One Time Passwords versus MS Live Logins – AAD
In Azure AD, an external user can be added via an email invitation (also read B2B versus B2C Users in AAD and More on AAD Guest Users). If that email…
Enterprise AAD App – Visible to All users
There are a couple of different ways to grant ALL users access to an AAD enterprise app. The simplest approach most admins take is to via the App --> Properties…
Azure AD Connect for syncing AD Groups to AAD
Say you have AD groups and / or AD users that need to be synchronized to Azure AD. This can be from an existing AD on premises or a new…
How does one replace an on premises LDAP server with Azure AD?
Part of the answer lies in ADDS (Azure Active Directory Domain Services). You would create a managed domain with ADDS and configure that managed domain to use LDAP. Need…
One Time Passwords
What are OTPs? OTPs (alphanumeric strings) authenticate a user for a single transaction or session. OTPs may replace authentication login information or may be used in addition to it, to…
SCIM based provisioning of users versus Graph API
Say you had a SaaS product configured as an enterprise App in AAD and wanted to automate the addition / decommissioning of users for that app. There's a few paths…
Microsoft Identity Manager – MIM
MIM can be thought of as the precursor to AAD Enterprise Applications. It enables on premises AD Admins to provide users access to Active Directory and on-premises business applications. By…
Adding an Internal App to MyApps (to AAD) using App Proxy
One is accustomed to going to MyApps to see all their SaaS apps configured. However, even non-SaaS apps, including internal web apps and APIs can be hosted on MyApps. This…
Why move from ADFS to AAD?
Here are some of the reasons you should consider moving away from ADFS to AAD Certificate Management No Planned Downtime as in ADFS changes / updates. AAD Conditional Access -…
More on AAD Guest Users
(Also read AAD B2B External Users and Apps Visible in MyApps) Per Microsoft's Documentation Member: This value indicates an employee of the host organization and a user in the organization's…