SlideShare a Scribd company logo
Office 365 and Cloud Identity 
What does it mean to me? 
Scott Hoag 
Senior Systems Engineer, AIS 
Gold Sponsors Silver Sponsors Bronze Sponsors
SPS Sydney - Office 365 and Cloud Identity – What does it mean for me?
Agenda 
Identity Management in Office 365 
Identity Scenarios 
Synchronisation Demo 
Add-ons and More to Think About 
1 
2 
3 
4
Identity Management Overview
Terminology 
https://en.wikipedia.org/wiki/Identity_management
Terminology 
Authentication Authorization 
Verifying that a user, device, or 
service such as an application 
provided on a network server is 
the entity that it claims to be. 
Determining which actions an 
authenticated entity is authorized 
to perform on the network
Terminology 
 Single Sign On (SSO) is the ability for two disjoint Identity 
Providers (IDP) to trust each other such that a user logged in to 
one does not need to log in again for the second 
 Relying Party (RP) is the system that relies on the IDP to 
authenticate a user 
Security Assertion Markup 
Language (SAML) 
SAML is a public standard managed by OASIS. 
SAML is the identity token and also the 
protocol. 
WS-Federation (WSFED) / WS-Trust 
WSFED is used for web browser-based 
authentication with an IDP. WS-Trust is used by 
Office client apps to authenticate.*
Identity Synchronisation and Federation 
WS-Federation 
WS-Trust 
SAML 2.0 
Metadata 
Shibboleth 
Graph API
Microsoft Identity Services 
Microsoft Account Azure Active Directory 
Microsoft Account 
Ex: alice@outlook.com 
User 
Organizational Account 
Ex: alice@contoso.com 
User
Azure Active Directory
Identity Scenarios
SPS Sydney - Office 365 and Cloud Identity – What does it mean for me?
Choosing a Model
Choosing a Model
Choosing a Model 
 SSO is required 
 Multiple Forests 
 CAC or on-premises 
MFA 
 Business requires it
Choosing a Model
Directory Sync Demonstration
The Setup
Prepare and Download DirSync
Install DirSync
Configure DirSync
Other Considerations
Alternate Login ID
Azure AD Sync Services 
http://go.microsoft.com/?linkid=9845645 
http://go.microsoft.com/fwlink/?LinkID=270179
Office Client Passive Authentication 
SAML 2.0
Works with Office 365 – Identity program 
 Qualification of third party identity providers 
for federation with Office 365. Microsoft 
supports Office 365 only when qualified 
third party identity providers are used. 
 Published Qualification Requirements 
 Published Technical Integration Docs 
 Automated Testing Tool 
 Self Testing work by Partner 
 Predictable and Shorter Qualification 
 http://aka.ms/ssoproviders 
Customer 
Benefits 
*For representative purposes 
only. 
WS-Trust & WS-Federation 
Active Directory with ADFS 
SAML (passive 
auth) 
• Flexibility to reuse 
existing identity 
provider investments 
• Confidence that the 
solution is qualified by 
Microsoft 
• Coordinated support 
between the partner 
and Microsoft
Office 365 Federation Options 
Suitable for medium, 
large enterprises including 
educational organizations 
Suitable for medium, 
large enterprises including 
educational organizations 
Suitable for educational 
organizations 
For organizations that 
need to use SAML 2.0
Closing Thoughts
The end to end Microsoft Stack 
WS-Federation 
WS-Trust
Agenda 
Identity Management in Office 365 
Identity Scenarios 
Synchronisation Demo 
Add-ons and More to Think About 
 
 
 

SPS Sydney - Office 365 and Cloud Identity – What does it mean for me?
Resources 
Use third-party identity 
providers to implement single 
sign-on 
Deployment scenarios for 
Office 365 with single sign-on 
and Azure 
Choosing a sign-in model for 
Office 365 
Password hash sync simplifies 
user management for Office 
365 
Using Alternate Login IDs with 
Azure Active Directory 
Office 365 SAML 2.0 
Federation Implementer’s 
Guide 
Simplified login to Yammer 
from Office 365 
Multi-Factor Authentication for 
Office 365 
Office 365 User Account 
Management
Thanks for listening 
Remember to submit your feedback so you go in the draw to win prizes at 
the end of the day 
Gold Sponsors Silver Sponsors Bronze Sponsors

More Related Content

PPTX
SPS Sydney - To the Cloud! Utilising Azure as a Cloud Hosting Provider for Sh...
PPTX
SPSRIC - SharePoint 2013 – A brief overview for IT Pros
PPTX
FEDSPUG - SharePoint 2013 - A Brief Capability Overview
PPTX
Azure fundamental -Introduction
PPTX
SharePoint Saturday India Online 2012 - Running SharePoint 2010 Server Farm i...
PPTX
Azure AD and Office 365 - Deja Vu All Over Again
PDF
O365Con18 - Running SharePoint on Azure Tips - Jared Shockley
PPTX
AZURE Data Related Services
SPS Sydney - To the Cloud! Utilising Azure as a Cloud Hosting Provider for Sh...
SPSRIC - SharePoint 2013 – A brief overview for IT Pros
FEDSPUG - SharePoint 2013 - A Brief Capability Overview
Azure fundamental -Introduction
SharePoint Saturday India Online 2012 - Running SharePoint 2010 Server Farm i...
Azure AD and Office 365 - Deja Vu All Over Again
O365Con18 - Running SharePoint on Azure Tips - Jared Shockley
AZURE Data Related Services

What's hot (20)

PPTX
Azure AD Connect
PDF
Develop Your Own Path On Microsoft Azure
PPTX
Microsoft Azure ad in 10 slides
PPTX
Introduction to Microsoft Azure
PPTX
Microsoft Azure Veri Servisleri
PPTX
Windows Azure Virtual Machines
PPTX
Data saturday Oslo Azure Purview Erwin de Kreuk
PPTX
Scott Guthrie's Windows Azure Overview
PPTX
Azure AD connect- Deep Dive Webinar PPT
PPTX
Microsoft Azure News - 2019 May
PPTX
Azure Overview
PPT
Talk on windows azure
PDF
[WITH THE VISION 2017] IoT/AI時代を生き抜くためのデータ プラットフォーム (Leveraging Azure Data Se...
PPTX
10 reasons to use azure for your cloud apps
PPTX
Microsoft Azure News - 2019 April
PDF
Microsoft certified azure developer associate
PPTX
Microsoft Azure News - August 2017
PDF
Azure App Services
PDF
Get your Hybrid Identity in 4 steps with Azure AD Connect
PPTX
Introduction To Cloud Computing Winsows Azure101
Azure AD Connect
Develop Your Own Path On Microsoft Azure
Microsoft Azure ad in 10 slides
Introduction to Microsoft Azure
Microsoft Azure Veri Servisleri
Windows Azure Virtual Machines
Data saturday Oslo Azure Purview Erwin de Kreuk
Scott Guthrie's Windows Azure Overview
Azure AD connect- Deep Dive Webinar PPT
Microsoft Azure News - 2019 May
Azure Overview
Talk on windows azure
[WITH THE VISION 2017] IoT/AI時代を生き抜くためのデータ プラットフォーム (Leveraging Azure Data Se...
10 reasons to use azure for your cloud apps
Microsoft Azure News - 2019 April
Microsoft certified azure developer associate
Microsoft Azure News - August 2017
Azure App Services
Get your Hybrid Identity in 4 steps with Azure AD Connect
Introduction To Cloud Computing Winsows Azure101
Ad

Viewers also liked (8)

PDF
JAXSPUG January 2016 - Microsoft Cloud Identities in Azure and Office 365
PPTX
Understanding Office 365’s Identity Solutions: Deep Dive - EPC Group
PPTX
Understanding Identity Management with Office 365
PPTX
SPIntersection 2016 - MICROSOFT CLOUD IDENTITIES IN AZURE AND OFFICE 365
PPTX
Brian Desmond - Identity and directory synchronization with office 365 and wi...
PPTX
Hybrid Identity Management with SharePoint and Office 365 - Antonio Maio
PDF
Developing custom claim providers to enable authorization in share point an...
PPTX
Office 365 Identity Management options
JAXSPUG January 2016 - Microsoft Cloud Identities in Azure and Office 365
Understanding Office 365’s Identity Solutions: Deep Dive - EPC Group
Understanding Identity Management with Office 365
SPIntersection 2016 - MICROSOFT CLOUD IDENTITIES IN AZURE AND OFFICE 365
Brian Desmond - Identity and directory synchronization with office 365 and wi...
Hybrid Identity Management with SharePoint and Office 365 - Antonio Maio
Developing custom claim providers to enable authorization in share point an...
Office 365 Identity Management options
Ad

Similar to SPS Sydney - Office 365 and Cloud Identity – What does it mean for me? (20)

PPTX
SYDSP - Office 365 and Cloud Identity - What does it mean for me?
PPTX
SPSVB - Office 365 and Cloud Identity - What Does It Mean for Me?
PDF
Office 365 identity
PPTX
2. Day 2 - Identify and SSO
PDF
O365con14 - moving from on-premises to online, the road to follow
PDF
Office 365 and Cloud Identity – What Does It Mean For Me?
PPTX
Microsoft Office 365 Directory Synchronization and Federation Options
PPTX
70 346 Managing office 365 identities
PPTX
Office 365 MCSA TechEd
PPTX
1. Day 1 - Office 365 Trainning
PDF
Office 365 Identity Management - SMBNation 2015
PPTX
Office 365 integration using organizational identities
PDF
Identity and Authentication in Office 2013 and Office 365 from Microsoft
PDF
Identity in office 365 sps michigan 2013
PPTX
Connect to the Microsoft Cloud
PPTX
CoLabora - Identity in a World of Cloud - June 2015
PPTX
Hybrid SharePoint - Office 365 & On-prem SharePoint 2013 -part2
PPTX
Fundamentals of Microsoft 365 Security , Identity and Compliance
PDF
SPCA2013 - It’s Me, and Here’s My ProofIdentity & Authentication in SharePoin...
PPTX
Webinar: Lets talk Office 365
SYDSP - Office 365 and Cloud Identity - What does it mean for me?
SPSVB - Office 365 and Cloud Identity - What Does It Mean for Me?
Office 365 identity
2. Day 2 - Identify and SSO
O365con14 - moving from on-premises to online, the road to follow
Office 365 and Cloud Identity – What Does It Mean For Me?
Microsoft Office 365 Directory Synchronization and Federation Options
70 346 Managing office 365 identities
Office 365 MCSA TechEd
1. Day 1 - Office 365 Trainning
Office 365 Identity Management - SMBNation 2015
Office 365 integration using organizational identities
Identity and Authentication in Office 2013 and Office 365 from Microsoft
Identity in office 365 sps michigan 2013
Connect to the Microsoft Cloud
CoLabora - Identity in a World of Cloud - June 2015
Hybrid SharePoint - Office 365 & On-prem SharePoint 2013 -part2
Fundamentals of Microsoft 365 Security , Identity and Compliance
SPCA2013 - It’s Me, and Here’s My ProofIdentity & Authentication in SharePoin...
Webinar: Lets talk Office 365

More from Scott Hoag (20)

PPTX
SharePoint Conference 2018 - Understanding Office 365 Usage Reporting
PPTX
SharePoint Conference 2018 - Securing Office 365 and SharePoint Online with A...
PDF
Global Azure Bootcamp 2018 - Azure Security Center
PDF
Global Azure Bootcamp 2018 - Azure Network Security
PPTX
SPIntersection 2016 - TO THE CLOUD! USING IAAS AS A HOSTING PROVIDER FOR SHAR...
PPTX
JAXSPUG April 2016 - Staying in the Know with Office 365
PPTX
SPSDC - To the Cloud! Using IaaS as a Hosting Provider for SharePoint
PPTX
SPSNYC SharePoint Worst Practices
PPTX
March Sydney Office 365 Meetup - Office 365 and Hybrid Solutions... what work...
PPTX
SPSVB - Office 365 and Hybrid Solutions... what works for my organization?
PPTX
SPSVB - To the Cloud! Using IaaS as a Hosting Provider for SharePoint
PPTX
SPSCBR - Pitfalls of Migrating to SharePoint 2013
PPTX
Canberra SPUG - February 2014 - Pitfalls of Migrating to SharePoint 2013
PPTX
Sydney SPUG - February 2014 - Pitfalls of Migrating to SharePoint 2013
PPTX
SPSNYC - Authentication, Authorization, and Identity – More than meets the eye…
PPTX
SPT15 To the Cloud! Utilizing AWS and Azure as Cloud Hosting Providers for Sh...
PPTX
Getting Started with Office 365
PPTX
Authentication, Authorization, and Identity – More than meets the eye…
PPTX
HRSSUG - SharePoint 2013 - A brief overview of IT Pro Capability
PPTX
SPSPhilly - SharePoint 2010 Tips & Tricks of the Trade - Avoiding Administrat...
SharePoint Conference 2018 - Understanding Office 365 Usage Reporting
SharePoint Conference 2018 - Securing Office 365 and SharePoint Online with A...
Global Azure Bootcamp 2018 - Azure Security Center
Global Azure Bootcamp 2018 - Azure Network Security
SPIntersection 2016 - TO THE CLOUD! USING IAAS AS A HOSTING PROVIDER FOR SHAR...
JAXSPUG April 2016 - Staying in the Know with Office 365
SPSDC - To the Cloud! Using IaaS as a Hosting Provider for SharePoint
SPSNYC SharePoint Worst Practices
March Sydney Office 365 Meetup - Office 365 and Hybrid Solutions... what work...
SPSVB - Office 365 and Hybrid Solutions... what works for my organization?
SPSVB - To the Cloud! Using IaaS as a Hosting Provider for SharePoint
SPSCBR - Pitfalls of Migrating to SharePoint 2013
Canberra SPUG - February 2014 - Pitfalls of Migrating to SharePoint 2013
Sydney SPUG - February 2014 - Pitfalls of Migrating to SharePoint 2013
SPSNYC - Authentication, Authorization, and Identity – More than meets the eye…
SPT15 To the Cloud! Utilizing AWS and Azure as Cloud Hosting Providers for Sh...
Getting Started with Office 365
Authentication, Authorization, and Identity – More than meets the eye…
HRSSUG - SharePoint 2013 - A brief overview of IT Pro Capability
SPSPhilly - SharePoint 2010 Tips & Tricks of the Trade - Avoiding Administrat...

Recently uploaded (20)

PPTX
Understanding_Digital_Forensics_Presentation.pptx
PDF
Using Anchore and DefectDojo to Stand Up Your DevSecOps Function
PDF
Orbitly Pitch Deck|A Mission-Driven Platform for Side Project Collaboration (...
PDF
A Day in the Life of Location Data - Turning Where into How.pdf
PDF
GamePlan Trading System Review: Professional Trader's Honest Take
PDF
Security features in Dell, HP, and Lenovo PC systems: A research-based compar...
PPTX
ChatGPT's Deck on The Enduring Legacy of Fax Machines
PDF
solutions_manual_-_materials___processing_in_manufacturing__demargo_.pdf
PDF
creating-agentic-ai-solutions-leveraging-aws.pdf
PDF
Enable Enterprise-Ready Security on IBM i Systems.pdf
PDF
agentic-ai-and-the-future-of-autonomous-systems.pdf
PDF
Google’s NotebookLM Unveils Video Overviews
PDF
DevOps & Developer Experience Summer BBQ
PDF
Software Development Methodologies in 2025
PDF
CIFDAQ's Market Wrap: Ethereum Leads, Bitcoin Lags, Institutions Shift
PDF
Chapter 2 Digital Image Fundamentals.pdf
PDF
How Onsite IT Support Drives Business Efficiency, Security, and Growth.pdf
PPTX
CroxyProxy Instagram Access id login.pptx
PDF
CIFDAQ's Teaching Thursday: Moving Averages Made Simple
PDF
Cloud-Migration-Best-Practices-A-Practical-Guide-to-AWS-Azure-and-Google-Clou...
Understanding_Digital_Forensics_Presentation.pptx
Using Anchore and DefectDojo to Stand Up Your DevSecOps Function
Orbitly Pitch Deck|A Mission-Driven Platform for Side Project Collaboration (...
A Day in the Life of Location Data - Turning Where into How.pdf
GamePlan Trading System Review: Professional Trader's Honest Take
Security features in Dell, HP, and Lenovo PC systems: A research-based compar...
ChatGPT's Deck on The Enduring Legacy of Fax Machines
solutions_manual_-_materials___processing_in_manufacturing__demargo_.pdf
creating-agentic-ai-solutions-leveraging-aws.pdf
Enable Enterprise-Ready Security on IBM i Systems.pdf
agentic-ai-and-the-future-of-autonomous-systems.pdf
Google’s NotebookLM Unveils Video Overviews
DevOps & Developer Experience Summer BBQ
Software Development Methodologies in 2025
CIFDAQ's Market Wrap: Ethereum Leads, Bitcoin Lags, Institutions Shift
Chapter 2 Digital Image Fundamentals.pdf
How Onsite IT Support Drives Business Efficiency, Security, and Growth.pdf
CroxyProxy Instagram Access id login.pptx
CIFDAQ's Teaching Thursday: Moving Averages Made Simple
Cloud-Migration-Best-Practices-A-Practical-Guide-to-AWS-Azure-and-Google-Clou...

SPS Sydney - Office 365 and Cloud Identity – What does it mean for me?

  • 1. Office 365 and Cloud Identity What does it mean to me? Scott Hoag Senior Systems Engineer, AIS Gold Sponsors Silver Sponsors Bronze Sponsors
  • 3. Agenda Identity Management in Office 365 Identity Scenarios Synchronisation Demo Add-ons and More to Think About 1 2 3 4
  • 6. Terminology Authentication Authorization Verifying that a user, device, or service such as an application provided on a network server is the entity that it claims to be. Determining which actions an authenticated entity is authorized to perform on the network
  • 7. Terminology  Single Sign On (SSO) is the ability for two disjoint Identity Providers (IDP) to trust each other such that a user logged in to one does not need to log in again for the second  Relying Party (RP) is the system that relies on the IDP to authenticate a user Security Assertion Markup Language (SAML) SAML is a public standard managed by OASIS. SAML is the identity token and also the protocol. WS-Federation (WSFED) / WS-Trust WSFED is used for web browser-based authentication with an IDP. WS-Trust is used by Office client apps to authenticate.*
  • 8. Identity Synchronisation and Federation WS-Federation WS-Trust SAML 2.0 Metadata Shibboleth Graph API
  • 9. Microsoft Identity Services Microsoft Account Azure Active Directory Microsoft Account Ex: [email protected] User Organizational Account Ex: [email protected] User
  • 15. Choosing a Model  SSO is required  Multiple Forests  CAC or on-premises MFA  Business requires it
  • 24. Azure AD Sync Services http://go.microsoft.com/?linkid=9845645 http://go.microsoft.com/fwlink/?LinkID=270179
  • 25. Office Client Passive Authentication SAML 2.0
  • 26. Works with Office 365 – Identity program  Qualification of third party identity providers for federation with Office 365. Microsoft supports Office 365 only when qualified third party identity providers are used.  Published Qualification Requirements  Published Technical Integration Docs  Automated Testing Tool  Self Testing work by Partner  Predictable and Shorter Qualification  http://aka.ms/ssoproviders Customer Benefits *For representative purposes only. WS-Trust & WS-Federation Active Directory with ADFS SAML (passive auth) • Flexibility to reuse existing identity provider investments • Confidence that the solution is qualified by Microsoft • Coordinated support between the partner and Microsoft
  • 27. Office 365 Federation Options Suitable for medium, large enterprises including educational organizations Suitable for medium, large enterprises including educational organizations Suitable for educational organizations For organizations that need to use SAML 2.0
  • 29. The end to end Microsoft Stack WS-Federation WS-Trust
  • 30. Agenda Identity Management in Office 365 Identity Scenarios Synchronisation Demo Add-ons and More to Think About    
  • 32. Resources Use third-party identity providers to implement single sign-on Deployment scenarios for Office 365 with single sign-on and Azure Choosing a sign-in model for Office 365 Password hash sync simplifies user management for Office 365 Using Alternate Login IDs with Azure Active Directory Office 365 SAML 2.0 Federation Implementer’s Guide Simplified login to Yammer from Office 365 Multi-Factor Authentication for Office 365 Office 365 User Account Management
  • 33. Thanks for listening Remember to submit your feedback so you go in the draw to win prizes at the end of the day Gold Sponsors Silver Sponsors Bronze Sponsors