Secure Identities and Access Workshop Delivery Guide 4 July 2022



Download 1.16 Mb.
Page17/37
Date08.08.2023
Size1.16 Mb.
#61825
1   ...   13   14   15   16   17   18   19   20   ...   37
Secure Identities and Access

Application Discovery Setup




To have visibility of the customer’s application landscape and the organization’s potential readiness to migrate to Azure AD, you need to discover as many applications as possible. You will use different tools and means to accomplish this goal.


Objectives

The objective for the Application Discovery Setup is to gather as much information as possible on the customer’s application landscape and its potential readiness for migration to Azure AD.
To achieve this, you will use the following tools and methods:

  • Set up Azure AD Connect Health agent on AD FS servers.

  • Run AD FS application migrations scripts on AD FS servers.

  • If the customer is using Okta, install and run the Identity Transporter Tool against customer’s Okta tenant.

  • Ingest firewall and/or web proxy logs in the Azure AD Cloud Discovery section of MCAS/OCAS.
Format

Can be delivered as an onsite or online activity, assuming the customer can perform actions on your behalf, with instructions from you, or by giving you control over a sharing session.
Customer resources

  • Security Team
Delivery resources
Supporting materials

No supporting materials exist.
Preparation

Prior to delivering the Application Discovery Setup and Discussion activity, the delivery resource leading the meeting will need to familiarize themself with:

  • The completed 02 - Secure Identities and Access - Customer Questionnaire.docx document

  • The 04 - Secure Identities and Access - Application Discovery.pptx presentation content.
Pre-requisites

  • Agreement from the customer to install Azure AD Connect Health Agent on AD FS Servers.

  • Credentials with required rights to perform installation or running scripts.

  • If the customer is using Okta, obtaining the Identity Transporter Tool by requesting it using the form at https://aka.ms/IdentityTransporter/Resources/RequestForm

  • M365 Tenant access with sufficient rights to Azure AD Cloud App Discovery.

  • Firewall/web Proxy logs to ingest.
Deliverables

The deliverables of the Application Discovery Setup and Discussion activity are defined as:

  • Azure AD Connect Health agent installed and running on all AD FS servers.

  • Optionally, AD FS to Azure AD application migration scripts run on all AD FS servers.

  • Azure AD cloud discovery snapshot report created after firewall/web proxy logs ingestion.

These deliverables will serve as input to the next steps.
Guidance

The Application Discovery Setup and Discussion activity consists of potentially three to four different activities. See guidance for each of them separately below.

Download 1.16 Mb.

Share with your friends:
1   ...   13   14   15   16   17   18   19   20   ...   37




The database is protected by copyright ©ininet.org 2024
send message

    Main page