...

/

Building Blocks of IAM

Building Blocks of IAM

Learn the key components of IAM that make it an effective solution.

We'll cover the following...

Let’s understand the three main components of IAM:

  • Identities
  • Roles
  • Scope

Identities

Identities is a component that’s represented by a security principleSecurity principle is an entity that can be authenticated and authorized to access resources. A security principal can be a user, a group of users, a computer system, or even an application or service.. When we talk about authentication and authorization, we’re basically applying that to identities. The identities component also has three further categories:

  • Users: These are the users of our organization or the external users added to our Entra ID account to provide them with access to our organization’s resources. Users can also be hybrid identitiesA hybrid identity is a type of identity that spans across both on-premises and cloud environments. It allows users to use the same set of credentials to access resources in their local network as well as in the cloud., which are created once we sync the on-premises Active Directory with Entra ID.

  • Groups: Entra ID offers us a feature to group multiple users together so that the ones that need similar types of access can be put in one group. If an access policy is applied to a group, all the users who are members of that group will be subjected to the same policy.

  • Applications: An application becomes a service principal when it gets registered on our Microsoft Entra tenant account. Using the concept of ...