Presentation is loading. Please wait.

Presentation is loading. Please wait.

4/3/2019 3:20 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS.

Similar presentations


Presentation on theme: "4/3/2019 3:20 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS."— Presentation transcript:

1 4/3/2019 3:20 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

2 Choosing the right Azure AD authentication method
4/3/2019 3:20 PM THR3046 Choosing the right Azure AD authentication method Swaroop Krishnamurthy Principal Program Manager Microsoft Identity Division (+ Martin Coetzer) © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

3 Authentication options
Least deployment effort No real-time on-prem dependency Leaked credential protection Password Hash Sync (PHS) + Seamless SSO Need help to choose? aka.ms/auth-options Cloud-only Pass-through Authentication (PTA) + Seamless SSO Re-use Active Directory policies Light weight agents deployed No inbound networking Smartcard & certificate authentication On-premises MFA server Multi-site on-premises authentication (AD FS / 3rd party providers) Federation

4 Demo Seamless SSO 4/3/2019 3:20 PM
© Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

5 Trends in authentication
Cloud Authentication * includes cloud-only Federated Authentication 2013 2014 2015 2016 2017 PHS PTA 2018

6 Take the next step No real-time on-prem dependency
Leaked credential protection Password Hash Sync + Seamless SSO Disaster recovery Leaked credential protection Pass-through Authentication + Seamless SSO Pass-through Authentication + Password Hash Sync + Seamless SSO Disaster recovery Leaked credential protection Federation + Password Hash Sync Federation

7 Ready to migrate? Cutover migration to PHS? aka.ms/deploymentplans
Password Hash Sync + Seamless SSO Pass-through Authentication + Seamless SSO Pass-through Authentication + Password Hash Sync + Seamless SSO Cutover migration to PTA? aka.ms/deploymentplans Medium or simple org? aka.ms/deploymentplans Federation + Password Hash Sync Federation

8 Is a cutover too disruptive?
Introducing Staged authentication rollout! Password Hash Sync + Seamless SSO Pass-through Authentication + Seamless SSO Pass-through Authentication + Password Hash Sync + Seamless SSO Introducing Staged authentication rollout! Introducing Staged authentication rollout! Federation + Password Hash Sync Federation

9 Demo Staged authentication rollout 4/3/2019 3:20 PM
© Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

10 Roadmap for moving to cloud authentication
4/3/2019 3:20 PM Roadmap for moving to cloud authentication Wednesday: BRK3241 Enable Azure AD Conditional Access Set Conditional Access policies Configure MFA to secure access Monitor health Microsoft Authenticator App Use SSPR + Password protection Monday: THR2238 Joining devices to Azure AD in a hybrid world Tuesday: THR3047 Ensure all your users have strong passwords Manage devices in the cloud Staged migration Tuesday: BRK3031 Getting a world without passwords Tuesday: WRK2006 Deploy SaaS Apps in record time Migrate federated apps Secure with Identity protection Thursday: BRK3243 Hybrid Identity and access management best practices Windows Hello for Business Enable PHS Wednesday: BRK2157 Ensure comprehensive identity protection Thursday: BRK2253 What’s new for Windows Hello for Business © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

11 Key takeaways Turn on Password Hash Sync & Seamless SSO
Choose cloud authentication Migrate to cloud authentication: One-time (deployment guides) Gradually (staged authentication rollout feature)

12 Resources Choose the right authentication method: aka.ms/auth-options
Azure AD Deployment plans: aka.ms/deploymentplans Hybrid Identity Framework: aka.ms/aadframework Security considerations: aka.ms/aaddatawhitepaper Reduce passwords: aka.ms/gopasswordless

13 Thank you! Questions?

14 Please evaluate this session Your feedback is important to us!
4/3/2019 3:20 PM Please evaluate this session Your feedback is important to us! Please evaluate this session through MyEvaluations on the mobile app or website. Download the app: Go to the website: © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

15 4/3/2019 3:20 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.


Download ppt "4/3/2019 3:20 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS."

Similar presentations


Ads by Google