Describe access management capabilities of Microsoft Entra ID Flashcards

1
Q

Describe Conditional Access

A

It is a feature of Microsoft Entra ID that provides an extra layer of security before allowing authenticated users to access data or other assets.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Describe a Conditional Access Policy

A

It uses analysis signals including user, location, device, application, and risk to automate decisions for authorization access to resources.

They are enforced after first-factor authentications.

It consists of two components, assignments and access controls.

Assignment- controls the who, what, where, and when of the Condition Access Policy. All assignments are logically ANDed.

Access controls - decides how a policy will be enforced, whether to block access, grant access with extra verification, or apply a session control to enable a limited experience.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Define role-based access controls (RBAC).

A

It is managing access using roles.

Microsoft Entra built-in and custom roles are a form of RBAC in that MEID roles control access to Microsoft Entra resources. This is referred to as Microsoft Entra RBAC.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Describe Built-in roles

A

MEID includes many built-in roles, which are roles with a fixed set of permissions. Like:

-Global Administrator: users with this role have access to all admin features. The person who signs in as a tenant automatically gets this role.
-User Administrator: users with this role can create and manage all aspects of users and groups, support tickets, and monitor service health.
-Billing administrator: users with this role make purchases, manage subscriptions and support tickets, and monitor service health.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Describe custom roles

A

is a collection of permissions that you choose from a preset list.

Step 1. Creating a custom role from a preset list. Step 2 you assign it to a group.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly