Update LAB_01-Manage_Entra_ID_Identities.md

This commit is contained in:
staleycyn 2024-01-11 06:24:05 -08:00 committed by GitHub
parent b72b64c89f
commit 15af541ab7
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -40,13 +40,14 @@ There are interactive lab simulations that you might find useful for this topic.
In this task, you create a resource group. A resource group is a grouping of related resources. For example, all the resources for a project, a department, or an application.
>**Note:** For each lab in this course you will create a new resource group. This lets you quickly locate and manage your lab resources.
1. Sign in to the **Azure portal** - `https://portal.azure.com`.
>**Note:** The Azure portal is used in all the labs. If you are new to the Azure, search for and select `Quickstart Center`. Take a few minutes to watch the **Getting started in the Azure portal** video. Even if you have used the portal before, you will find a few tips and tricks on navigating and customizing the interaface.
1. In the Azure portal, search for and select `Resource groups`.
>**Note:** For each lab in this course you will create a new resource group. This lets you quickly locate and manage your lab resources.
1. On the **Resource groups** blade, click **+ Create**, and provide the required information.
@ -56,7 +57,7 @@ In this task, you create a resource group. A resource group is a grouping of rel
| Resource group name | `az104-rg1` |
| Location | **East US** |
>**Note:** All the labs use **East US**. Watch the **Select the best region** video in the **Quickstart Center** to learn what to consider when selecting a region.
>**Did you know?** The **Quickstart Center** has a video on how to **Select the best region**.
1. Click **Review + create** and then click **Create**.
@ -74,9 +75,11 @@ In this task, you will create and configure user accounts. User accounts will st
+ **Administrative units** lets you group users, groups, or devices into a single manageable unit.
+ **Licenses** lets you purchase a license, manage the licenses you have, and assign licenses to users and groups.
+ **Self service password reset** allow your users to manage their password from any device, at any time, from any location.
+ **Self service password reset** allow your users to manage their password from any device, at any time, from any location. This feature requires a premium license.
1. Select **Users**, then in the **New user** drop-down select **Create new user**. Notice the selection to **Invite an external user**.
### Create a new user
1. Select **Users**, then in the **New user** drop-down select **Create new user**.
1. Create a new user with the following settings (leave others with their defaults). On the **Properties** tab notice all the different types of information that can be included in the user account.
@ -86,12 +89,27 @@ In this task, you will create and configure user accounts. User accounts will st
| Display name | `az104-user1` |
| Auto-generate password | de-select |
| Initial password | **Provide a secure password** |
| Job title (Properties tab) | `Cloud Administrator` |
| Job title (Properties tab) | `IT Lab Administrator` |
| Department (Properties tab) | `IT` |
| Usage location (Properties tab) | **United States** |
1. Once you have finished reviewing, select **Review + create** and then **Create**.
### Invite an external user
1. Select **Users**, then in the **New user** drop-down select **Invite an external user**.
| Setting | Value |
| --- | --- |
| Email | your email address |
| Display name | your name |
| Send invite message | **check the box** |
| Message | **Welcome to Azure and our group project** |
1. Move to the **Properties** tab. Notice the **User type** is **Guest**. Notice the user account information is similar to creating a new user.
1. Select **Review + invite**, and then **Invite**.
>**Note:** It is unlikely you will be creating user accounts individually. Do you know how your organization plans to create and manage user accounts?
### Task 4: Create groups and add members
@ -100,6 +118,11 @@ In this task, you create a group account. Group accounts can include user accoun
1. In the Azure portal, search for and select `Groups`.
1. Take a minute to familiarize yourself group settings in the left pane.
+ **Expiration** lets you configre a group lifetime in days. The group must be renewed by the owner.
+ **Naming policy** lets you configure blocked words and add a prefix or suffix to group names.
1. Select **+ New group** and create a new group.
| Setting | Value |
@ -109,20 +132,19 @@ In this task, you create a group account. Group accounts can include user accoun
| Group description | `Administrators that manage the IT lab` |
| Membership type | **Assigned** |
>**Note**: Notice the options in the **Membership type** drop-down. An Entra ID Premium P1 or P2 license is required for dynamic membership.
>**Note**: Notice the other options in the **Membership type** drop-down. An Entra ID Premium P1 or P2 license is required for dynamic membership.
![Screenshot of create assigned group.](../media/az104-lab01-create-assigned-group.png)
1. Click **No members selected**.
1. Select **No owners selected**.
1. From the **Add members** blade, search for and select the **az104-user1** and add them to the group.
1. In the **Add owners** page, search for and **select** yourself as the owner. Notice you can have more than one owner.
1. Select **No members selected**.
1. Click **Create** to deploy the group.
1. In the **Add members** pane, search for and **select** the **az104-user1** and add them to the group.
1. Take a few more minutes to familiarize yourself with other group settings.
+ **Expiration** lets you configre a group lifetime in days. The group must be renewed by the owner.
+ **Naming policy** lets you configure blocked words and add a prefix or suffix to group names.
1. Select **Create** to deploy the group.
>**Note:** It is likely you will be managing a large number of groups. Does your organization have a plan for creating groups and adding members?