Security is about managing the access of users to the organization’s applications, platforms and portals. Active directory is used to manage the database of users in a protected manner. The same kind of service is provided by Windows Azure to keep the users and their password safe. Active directory is a feature that lets you create users, manage their roles, grant access and delete them.
Creating an Active Directory
Step 1 − Sign in to Azure Management Portal.
Step 2 − Click ‘New’ and then click ‘App Services’.
data:image/s3,"s3://crabby-images/5651b/5651b4af903c3d48c0368807d20ae7bee529fe53" alt="Creating Active Directory"
Step 3 − Click ‘Active Directory’ and then ‘Directory’.
Step 4 − Click ‘Custom Create’.
data:image/s3,"s3://crabby-images/3842c/3842c6c81edb0c2a8004b91de1cfab6cc1423e20" alt="Creating an Active Directory"
Step 5 − Enter the details and you are done. In the following image, ‘tutpoint’ is the domain name. Enter a domain name which is a temporary DNS. Once its directory is created, you can map it to your own domain.
data:image/s3,"s3://crabby-images/ac174/ac174f6a8f4a240d8eae97458fb6bc5e6f99e13a" alt="Creating an Active Directory"
Mapping a Custom Domain
Since you have provided a temporary domain name, when creating a directory in Windows Azure, you can map it to your own domain using this functionality.
Step 1 − Click on the directory name in the list of your directory.
Step 2 − Click on ‘Domains’ from the top menu items.
Step 3 − Click ‘Add a Custom Domain’.
data:image/s3,"s3://crabby-images/494c1/494c1affcf84ab56b5d6ae4669a5f23c1bb2083e" alt="Mapping a Custom Domain"
Step 4 − In the screen that pops up, enter the details. You can choose for ‘single sign in option’ if needed.
data:image/s3,"s3://crabby-images/71515/71515281cb7a7e3bf9aa36a874310c2b7ff08d02" alt="Mapping a Custom Domain"
Creating Users
Step 1 − Click on ‘Add User’ button at the bottom of the screen.
data:image/s3,"s3://crabby-images/3246d/3246d4fc601109c52fd1271db88f4b55fa271cbb" alt="Creating Users"
Step 2 − The following screen pops up. You can create a new user or link an existing Microsoft account. You can even import a user from other directory in Azure. Let’s choose ‘Create a new user’ here.
data:image/s3,"s3://crabby-images/7beb1/7beb1fb32de29cd985a9bc4b7796480892c45765" alt="Creating Users"
Step 3 − Enter the user name in the following screen.
data:image/s3,"s3://crabby-images/9ab5a/9ab5a255355322fc8fc4e289a8c9cefcd96652fc" alt="Creating Users"
Step 4 − Enter other details and choose the role for the user.
data:image/s3,"s3://crabby-images/d830e/d830e73aa2d01d9ef22e628c9342a78e58f796ca" alt="Creating Users"
Step 5 − Click next arrow and it will create a user for your application and give you a temporary password which can be changed by the user.
Integrating with Azure Active Directory
Step 1 − Locate and click ‘Application’ at top of screen.
Step 2 − Click on ‘Add’ displayed at the bottom of the screen. A pop up shown in the following image will be seen on the screen.
data:image/s3,"s3://crabby-images/3144d/3144dcd93c7dfb87785c7b204aa7422fe296a9ee" alt="Integrating Active Directory"
Step 3 − If you click the first option, it will take you to the following screen. You can enter the name of the application and follow the wizard.
data:image/s3,"s3://crabby-images/d238d/d238d39cfc6a8ee2e444c3d256afee1cc18ab476" alt="Integrating Active Directory"
Step 4 − Similarly, if you choose the second option in ‘What do you want to do’ pop up, it will let you choose an application from the gallery as shown in the following screen.
data:image/s3,"s3://crabby-images/c343b/c343b430723de3d64ba1b6f2dad95f72089ab273" alt="Integrating Active Directory"
Integrating On-Premise Active Directory
Azure active directory lets you run an active directory in cloud and also lets you connect it to your on-premise active directory. Basically, it will replicate your user database residing on your on-premise machine in cloud. It will also automatically synchronize whenever changes are made on-premise.
Click on the ‘Directory Integration’ from the top menu. An on-premise directory can be connected using the three steps as shown in the following image.
data:image/s3,"s3://crabby-images/cff59/cff594391064accec94311ee856deecb1ada7d45" alt="Integrating Active Directory"
Reports
This is a very useful feature of Active Directory as it shows different reports such as number of times a user is signing in, or signing in from an unknown device can be seen here.
data:image/s3,"s3://crabby-images/87240/87240275bb12be6df639d94bc8d6fe107cd753f3" alt="Security Reports"
No comments:
Post a Comment