PART 6: IDENTITY & ACCESS MANAGEMENT

6.1 Microsoft Entra ID (Azure AD)

Overview

Cloud identity platform providing SSO, MFA, and access control.

Key Concepts

Authentication

Permissions

Key Features

Editions

FeatureFreeP1P2
Conditional AccessNoYesYes
PIMNoNoYes

6.2 Entra External ID (B2C)

Customer identity platform with social login and custom flows.

6.3 Entra Domain Services

Managed domain services (LDAP, Kerberos, NTLM) for legacy apps.

6.4 Role-Based Access Control (RBAC)

Overview

Controls access to Azure resources.

Key Concepts

Built-in Roles

RoleDescription
OwnerFull access
ContributorManage resources
ReaderView only

Principles

6.5 Azure Key Vault

Overview

Secure storage for secrets, keys, and certificates.

Stores

Access Models

Key Features