From 15af541ab7e7cdbfc3eae8f0cbdb0759441e751f Mon Sep 17 00:00:00 2001 From: staleycyn <45440075+staleycyn@users.noreply.github.com> Date: Thu, 11 Jan 2024 06:24:05 -0800 Subject: [PATCH] Update LAB_01-Manage_Entra_ID_Identities.md --- .../Lab/LAB_01-Manage_Entra_ID_Identities.md | 48 ++++++++++++++----- 1 file changed, 35 insertions(+), 13 deletions(-) diff --git a/New Instructions/Lab/LAB_01-Manage_Entra_ID_Identities.md b/New Instructions/Lab/LAB_01-Manage_Entra_ID_Identities.md index e65e1ff0..88548c5d 100644 --- a/New Instructions/Lab/LAB_01-Manage_Entra_ID_Identities.md +++ b/New Instructions/Lab/LAB_01-Manage_Entra_ID_Identities.md @@ -40,13 +40,14 @@ There are interactive lab simulations that you might find useful for this topic. In this task, you create a resource group. A resource group is a grouping of related resources. For example, all the resources for a project, a department, or an application. ->**Note:** For each lab in this course you will create a new resource group. This lets you quickly locate and manage your lab resources. 1. Sign in to the **Azure portal** - `https://portal.azure.com`. >**Note:** The Azure portal is used in all the labs. If you are new to the Azure, search for and select `Quickstart Center`. Take a few minutes to watch the **Getting started in the Azure portal** video. Even if you have used the portal before, you will find a few tips and tricks on navigating and customizing the interaface. 1. In the Azure portal, search for and select `Resource groups`. + +>**Note:** For each lab in this course you will create a new resource group. This lets you quickly locate and manage your lab resources. 1. On the **Resource groups** blade, click **+ Create**, and provide the required information. @@ -56,7 +57,7 @@ In this task, you create a resource group. A resource group is a grouping of rel | Resource group name | `az104-rg1` | | Location | **East US** | - >**Note:** All the labs use **East US**. Watch the **Select the best region** video in the **Quickstart Center** to learn what to consider when selecting a region. + >**Did you know?** The **Quickstart Center** has a video on how to **Select the best region**. 1. Click **Review + create** and then click **Create**. @@ -74,9 +75,11 @@ In this task, you will create and configure user accounts. User accounts will st + **Administrative units** lets you group users, groups, or devices into a single manageable unit. + **Licenses** lets you purchase a license, manage the licenses you have, and assign licenses to users and groups. - + **Self service password reset** allow your users to manage their password from any device, at any time, from any location. + + **Self service password reset** allow your users to manage their password from any device, at any time, from any location. This feature requires a premium license. -1. Select **Users**, then in the **New user** drop-down select **Create new user**. Notice the selection to **Invite an external user**. +### Create a new user + +1. Select **Users**, then in the **New user** drop-down select **Create new user**. 1. Create a new user with the following settings (leave others with their defaults). On the **Properties** tab notice all the different types of information that can be included in the user account. @@ -86,12 +89,27 @@ In this task, you will create and configure user accounts. User accounts will st | Display name | `az104-user1` | | Auto-generate password | de-select | | Initial password | **Provide a secure password** | - | Job title (Properties tab) | `Cloud Administrator` | + | Job title (Properties tab) | `IT Lab Administrator` | | Department (Properties tab) | `IT` | | Usage location (Properties tab) | **United States** | 1. Once you have finished reviewing, select **Review + create** and then **Create**. +### Invite an external user + +1. Select **Users**, then in the **New user** drop-down select **Invite an external user**. + + | Setting | Value | + | --- | --- | + | Email | your email address | + | Display name | your name | + | Send invite message | **check the box** | + | Message | **Welcome to Azure and our group project** | + +1. Move to the **Properties** tab. Notice the **User type** is **Guest**. Notice the user account information is similar to creating a new user. + +1. Select **Review + invite**, and then **Invite**. + >**Note:** It is unlikely you will be creating user accounts individually. Do you know how your organization plans to create and manage user accounts? ### Task 4: Create groups and add members @@ -100,6 +118,11 @@ In this task, you create a group account. Group accounts can include user accoun 1. In the Azure portal, search for and select `Groups`. +1. Take a minute to familiarize yourself group settings in the left pane. + + + **Expiration** lets you configre a group lifetime in days. The group must be renewed by the owner. + + **Naming policy** lets you configure blocked words and add a prefix or suffix to group names. + 1. Select **+ New group** and create a new group. | Setting | Value | @@ -109,20 +132,19 @@ In this task, you create a group account. Group accounts can include user accoun | Group description | `Administrators that manage the IT lab` | | Membership type | **Assigned** | - >**Note**: Notice the options in the **Membership type** drop-down. An Entra ID Premium P1 or P2 license is required for dynamic membership. + >**Note**: Notice the other options in the **Membership type** drop-down. An Entra ID Premium P1 or P2 license is required for dynamic membership. ![Screenshot of create assigned group.](../media/az104-lab01-create-assigned-group.png) -1. Click **No members selected**. +1. Select **No owners selected**. -1. From the **Add members** blade, search for and select the **az104-user1** and add them to the group. +1. In the **Add owners** page, search for and **select** yourself as the owner. Notice you can have more than one owner. + +1. Select **No members selected**. -1. Click **Create** to deploy the group. +1. In the **Add members** pane, search for and **select** the **az104-user1** and add them to the group. -1. Take a few more minutes to familiarize yourself with other group settings. - - + **Expiration** lets you configre a group lifetime in days. The group must be renewed by the owner. - + **Naming policy** lets you configure blocked words and add a prefix or suffix to group names. +1. Select **Create** to deploy the group. >**Note:** It is likely you will be managing a large number of groups. Does your organization have a plan for creating groups and adding members?