Microsoft Azure
Product Details
- Overview
-
The identity product relevant to this category is Microsoft Entra ID, formerly Azure Active Directory—not the full Microsoft Azure cloud platform. Entra ID provides user and group directories, single sign-on, multi-factor authentication, conditional access, application provisioning, identity governance, and integration with Microsoft 365, Azure, Windows, and third-party applications.
Entra ID acts as a shared identity service across products. It can synchronize with on-premises Active Directory, receive identity data from HR or education systems, provide SSO to gallery and custom applications, and provision accounts through SCIM, LDAP, SQL, REST, SOAP, files, agents, and Microsoft Graph. Other Microsoft education products, such as School Data Sync and Intune for Education, rely on Entra identities and groups.
- Features
-
Directory and Microsoft ecosystem
- Maintains users, groups, applications, devices, roles, and access policies used across Microsoft 365, Azure, Windows, and connected services.
- Synchronizes with Active Directory and supports hybrid and cloud-only identity designs.
Application single sign-on- Provides SSO to Microsoft services, gallery applications, custom applications, and supported on-premises resources.
- Uses SAML, OpenID Connect, OAuth, WS-Federation, password-based access, and other documented integration methods.
Automated provisioning- Creates, updates, and removes users and groups in connected SaaS and on-premises applications.
- Supports SCIM, LDAP, SQL, REST, SOAP, files, Microsoft Graph, and partner connectors with attribute mapping and scoping rules.
Security and governance- Adds MFA, passwordless authentication, conditional access, identity protection, privileged roles, access packages, reviews, and entitlement management according to licensing.
- Provides sign-in, audit, provisioning, and risk information for security operations and compliance review.
Education interoperability- Works with Microsoft 365 Education, School Data Sync, Intune for Education, Windows devices, LMS and SIS applications, and third-party identity providers.
- Districts should document which component is actually in use because Azure, Entra ID, Active Directory, Microsoft 365, SDS, and Intune are distinct services.
- Interoperabilty
- Support Options
-
- Company News







































































