Home
%3CLINGO-SUB%20id%3D%22lingo-sub-1257361%22%20slang%3D%22en-US%22%3EEvolving%20Azure%20AD%20for%20every%20user%20and%20any%20identity%20with%20External%20Identities%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1257361%22%20slang%3D%22en-US%22%3E%3CP%3EHowdy%20folks%2C%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EEarlier%20this%20week%20at%20Microsoft%20Build%2C%20we%20announced%20that%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Fazure.microsoft.com%2Fen-us%2Fservices%2Factive-directory%2Fexternal-identities%2F%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%22%3E%3CSTRONG%3EAzure%20Active%20Directory%20(Azure%20AD)%20External%20Identities%3C%2FSTRONG%3E%3C%2FA%3E%26nbsp%3Bis%26nbsp%3Bavailable%20in%26nbsp%3Bpublic%20preview.%20Azure%20AD%20customers%20have%20given%20us%20a%20ton%20of%20feedback%20that%20they%20want%20a%20single%2C%20integrated%20identity%20service%20for%20enabling%20collaboration%20with%20partners%20and%20customers%20of%20all%20types.%20That%E2%80%99s%20what%20we%E2%80%99re%20working%20to%20deliver%2C%20so%20I%E2%80%99m%20excited%20that%20we%E2%80%99re%20ready%20to%20share%20this%20important%20update%20with%20you%20today!%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3ETo%20kick%20off%20the%20discussion%2C%20I%E2%80%99ve%20invited%20Robin%20Goldstein%2C%20a%20Principal%20Group%20PM%20Manager%20on%20the%20Microsoft%20Identity%20team%2C%20to%20blog%20about%20this%20growing%20set%20of%20capabilities%20that%20enable%20organizations%20and%20developers%20to%20secure%2C%20manage%20and%20build%20apps%20for%20customers%2C%20partners%20or%20any%20other%20external%20users.%20You%E2%80%99ll%20find%20Robin%E2%80%99s%20blog%20below.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EAs%20always%2C%20we%20hope%20you%E2%80%99ll%20try%20out%20the%20new%20features%20and%20share%20feedback%20through%26nbsp%3Bthe%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Ffeedback.azure.com%2Fforums%2F169401-azure-active-directory%22%20target%3D%22_blank%22%20rel%3D%22noopener%20nofollow%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%22%3EAzure%20feedback%20forum%3C%2FA%3E%26nbsp%3Bor%20by%20following%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Ftwitter.com%2Fazuread%22%20target%3D%22_blank%22%20rel%3D%22noopener%20nofollow%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%22%3E%40AzureAD%3C%2FA%3E%26nbsp%3Bon%20Twitter.%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3ERegards%2C%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EAlex%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E-----%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EHi%20everyone%2C%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EI%E2%80%99m%20Robin%20and%20I%20lead%20the%20team%E2%80%99s%20efforts%20around%20B2B%2C%20B2C%20and%20our%20auth%20user%20experiences.%20%26nbsp%3BI%E2%80%99m%26nbsp%3Bthrilled%20to%20be%20participating%20in%20the%20Identity%20blog%20for%20the%20first%20time%26nbsp%3Bto%20talk%20about%20Azure%20AD%20External%20Identities%20and%20the%20new%20set%20of%20features%20that%20you%20can%20try%20out%20today.%20With%20Azure%20AD%20External%20Identities%2C%20we%20are%20making%20a%20whole%20bunch%20of%20investments%20that%20will%20make%20it%20easier%20for%20organizations%26nbsp%3Band%20developers%20to%26nbsp%3Bsecure%2C%26nbsp%3Bmanage%26nbsp%3Band%20build%20apps%20that%20connect%20with%20different%20types%20of%20users%20outside%20an%20organization.%20In%20case%20you%20missed%20our%20demo%20at%20Microsoft%20Build%2C%20you%20can%20watch%20the%26nbsp%3B%3CA%20href%3D%22http%3A%2F%2Faka.ms%2FM365sk113%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%22%3Eon-demand%26nbsp%3Bsession%3C%2FA%3E%26nbsp%3Bfor%20free.%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3ENow%20let%20me%20tell%20you%20what%20I%E2%80%99m%20so%20excited%20about.%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EOrganizations%26nbsp%3Bare%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Fwww.microsoft.com%2Fsecurity%2Fblog%2F2020%2F04%2F06%2Fturning-collaboration-customer-engagement-up-strong-identity-approach%2F%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%22%3Ecollaborating%20and%20connecting%20with%20more%20external%20users%20than%20before%3C%2FA%3E%2C%26nbsp%3Bespecially%20as%20they%20adapt%20to%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fazure-active-directory-identity%2Fenable-remote-collaboration-quickly-and-securely-with-azure-ad%2Fba-p%2F1257334%22%20target%3D%22_blank%22%20rel%3D%22noopener%22%3Eremote%20business%20environments%3C%2FA%3E.%26nbsp%3BAt%20the%20same%20time%2C%26nbsp%3BIT%26nbsp%3Bdepartments%26nbsp%3Bare%20being%20asked%20to%20streamline%20costs%26nbsp%3Bwhile%20scaling%20to%26nbsp%3Bconnect%20with%26nbsp%3Ba%20growing%20external%20user%20base%26nbsp%3Bof%26nbsp%3Bdistributors%2C%26nbsp%3Bsuppliers%2C%20and%20other%20business%20partners.%26nbsp%3BNow%20more%20than%20ever%2C%20it%26nbsp%3Bis%26nbsp%3Bcritical%26nbsp%3Bfor%20business%20continuity%20to%20have%26nbsp%3Ba%20single%2C%20flexible%20identity%20solution%20to%20secure%20and%20manage%26nbsp%3Bthese%26nbsp%3Bdynamic%26nbsp%3Brelationships%26nbsp%3Bwhile%20still%20protecting%20their%20most%20valuable%20data%20and%20assets.%26nbsp%3B%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSTRONG%3EBuild%20flexible%2C%26nbsp%3Buser-centric%26nbsp%3Bexperiences%26nbsp%3Bfor%26nbsp%3Bcollaboration%3C%2FSTRONG%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EMany%20of%20our%26nbsp%3Bcustomers%26nbsp%3Band%20developers%26nbsp%3Buse%26nbsp%3BAzure%20AD%26nbsp%3Band%20Azure%20AD%20B2C%26nbsp%3Bbecause%26nbsp%3B%E2%80%98bring%20your%20own%20identity%E2%80%99%26nbsp%3Bis%20an%20essential%20requirement%26nbsp%3Bfor%20their%26nbsp%3Bapplications%20and%20business%20workflows.%26nbsp%3BPreviously%2C%20we%26nbsp%3Bempowered%26nbsp%3Bemployees%26nbsp%3Bto%26nbsp%3Binvite%26nbsp%3Busers%20from%20other%20organizations%20to%20collaborate%20as%20guests%2C%20and%20more%20recently%2C%26nbsp%3Bwe%26nbsp%3Bhave%26nbsp%3Badded%20even%20more%20ways%26nbsp%3Bfor%20external%20users%20to%26nbsp%3Bcollaborate%20with%20the%26nbsp%3Bgeneral%20availability%20of%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fazure%2Factive-directory%2Fb2b%2Fgoogle-federation%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%22%3EGoogle%20federation%3C%2FA%3E%26nbsp%3Band%26nbsp%3Bpublic%20preview%20of%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fazure%2Factive-directory%2Fb2b%2Fone-time-passcode%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%22%3Eemail%20one-time%20passcode%3C%2FA%3E.%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3ENow%26nbsp%3Bin%20public%20preview%2C%20admins%20and%26nbsp%3Bdevelopers%26nbsp%3Bcan%26nbsp%3Benable%26nbsp%3Bself-service%26nbsp%3Bsign-up%20and%20sign-in%26nbsp%3Bfor%26nbsp%3Btheir%20apps%2C%26nbsp%3Bintegrating%26nbsp%3B%3CSTRONG%3EGoogle%20and%26nbsp%3BFacebook%26nbsp%3BIDs%3C%2FSTRONG%3E%26nbsp%3Bin%20additional%20to%26nbsp%3Bthe%26nbsp%3Bcurrent%20set%20of%20identity%20providers.%26nbsp%3BOnce%26nbsp%3Bintegrated%2C%20the%20experience%26nbsp%3Bcan%26nbsp%3Bbe%26nbsp%3Bcontinuously%26nbsp%3Bupdated%20and%20customized%26nbsp%3Bwithout%26nbsp%3Bchanging%20app%26nbsp%3Bcode.%26nbsp%3BCheck%20out%20the%20documentation%20to%20learn%20more%20about%20%3CA%20href%3D%22https%3A%2F%2Faka.ms%2Fexid-self-service-sign-up%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%22%3Eenabling%20self-service%20sign-up%20with%20social%20IDs%3C%2FA%3E%20via%20the%20%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fgraph%2Fapi%2Fresources%2Fidentityprovider%3Fview%3Dgraph-rest-1.0%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%22%3EMicrosoft%20Graph%20API%3C%2FA%3E.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20image-alt%3D%22SocialIDScreen.png%22%20style%3D%22width%3A%20999px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Fgxcuf89792.i.lithium.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F193133iA7EA3D75CD66DF59%2Fimage-size%2Flarge%3Fv%3D1.0%26amp%3Bpx%3D999%22%20title%3D%22SocialIDScreen.png%22%20alt%3D%22Configure%20the%20end-user%20experience%20for%20sign-up%20with%20social%20identities%20both%20in%20the%20Azure%20AD%20portal%20and%20via%20API.%22%20%2F%3E%3CSPAN%20class%3D%22lia-inline-image-caption%22%20onclick%3D%22event.preventDefault()%3B%22%3EConfigure%20the%20end-user%20experience%20for%20sign-up%20with%20social%20identities%20both%20in%20the%20Azure%20AD%20portal%20and%20via%20API.%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EWe%20know%20many%20of%20our%20customers%26nbsp%3Brely%20on%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fazure%2Factive-directory%2Ffundamentals%2Fcustomize-branding%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%22%3ECompany%20Brand%26nbsp%3Bcapabilities%3C%2FA%3E%26nbsp%3Bto%20customize%26nbsp%3Bthe%26nbsp%3Blook-and-feel%26nbsp%3Bof%20their%26nbsp%3Bidentity%20experiences.%20Now%2C%26nbsp%3Busing%26nbsp%3B%3CSTRONG%3Ecustom%20user%26nbsp%3Battributes%3C%2FSTRONG%3E%2C%26nbsp%3Byou%20can%26nbsp%3Balso%26nbsp%3Blocalize%20and%20customize%26nbsp%3Bthe%20forms%20a%20user%20fills%26nbsp%3Bduring%26nbsp%3Bthe%26nbsp%3Bself-service%20sign-up%20process.%26nbsp%3BThis%26nbsp%3Bgives%26nbsp%3Byou%26nbsp%3Ban%26nbsp%3Beasy%20way%20to%20gather%20more%20information%20about%26nbsp%3Busers%26nbsp%3Baccessing%20apps%26nbsp%3Band%20services%26nbsp%3Bin%20your%26nbsp%3Borganization.%26nbsp%3BRead%20the%26nbsp%3Bdocumentation%26nbsp%3Bto%20learn%20more%26nbsp%3Babout%20%3CA%20href%3D%22https%3A%2F%2Faka.ms%2Fexid-custom-attributes%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%22%3Ecustomizing%26nbsp%3Battributes%26nbsp%3Bfor%20your%20apps%3C%2FA%3E.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20image-alt%3D%22AttributesScreen.png%22%20style%3D%22width%3A%20999px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Fgxcuf89792.i.lithium.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F193136iCA5FB68AB79B9005%2Fimage-size%2Flarge%3Fv%3D1.0%26amp%3Bpx%3D999%22%20title%3D%22AttributesScreen.png%22%20alt%3D%22Configure%20and%20customize%20user%20attribute%20collection.%22%20%2F%3E%3CSPAN%20class%3D%22lia-inline-image-caption%22%20onclick%3D%22event.preventDefault()%3B%22%3EConfigure%20and%20customize%20user%20attribute%20collection.%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EYou%20will%20find%20all%20of%20this%20in%20the%20new%20External%20Identities%20blade%20in%20the%20Azure%20AD%20Portal.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EIn%20the%20coming%20weeks%2C%20we%E2%80%99ll%20refresh%20the%20preview%20with%20support%20for%26nbsp%3B%3CSTRONG%3Eexternal%20API%20connectors%3C%2FSTRONG%3E%26nbsp%3Bto%20further%20extend%20the%20experience%26nbsp%3Bvia%26nbsp%3Bapproval%20workflows%20or%20other%20external%20process.%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSTRONG%3E%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%3C%2FSTRONG%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSTRONG%3EProtect%26nbsp%3Byour%26nbsp%3Bcustomers%2C%20apps%2C%26nbsp%3Band%26nbsp%3Bbrand%3C%2FSTRONG%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EProtecting%20sensitive%20data%20and%20staying%20compliant%20is%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fazure-active-directory-identity%2Fflash-whitepaper-connect-with-secure-customer-facing-apps%2Fba-p%2F1289973%22%20target%3D%22_blank%22%20rel%3D%22noopener%22%3Ecritical%20to%20maintaining%20user%20trust%3C%2FA%3E.%26nbsp%3BYou%20may%26nbsp%3Balready%26nbsp%3Buse%26nbsp%3Bpremium%20security%20capabilities%20of%20Azure%20AD%20such%20as%20Conditional%20Access%20and%20Identity%20Protection%20to%20secure%26nbsp%3Byour%20users%20and%20applications.%20These%20capabilities%20are%20also%20available%20to%20secure%20collaboration%20with%20External%20Identities.%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSTRONG%3EGovern%20external%20users%20more%20effectively%3C%2FSTRONG%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EMany%20of%20you%26nbsp%3Bmay%20be%20managing%26nbsp%3Bexternal%20relationships%26nbsp%3Bby%26nbsp%3Bcreating%20internal%20user%20accounts%26nbsp%3Bfor%20every%20guest%26nbsp%3Bin%26nbsp%3Byour%26nbsp%3Bdirectory.%26nbsp%3BNow%20you%20can%26nbsp%3Bconvert%20these%20users%20to%26nbsp%3Bexternal%20users%26nbsp%3Band%26nbsp%3Bget%26nbsp%3Bthe%20benefits%20of%20External%20Identities.%26nbsp%3BWhen%20you%26nbsp%3B%3CSTRONG%3Einvite%20internal%20users%26nbsp%3Bto%20B2B%20collaboration%3C%2FSTRONG%3E%2C%26nbsp%3Bguest%26nbsp%3Busers%26nbsp%3Brepresented%20as%26nbsp%3Bmembers%26nbsp%3Bin%20the%20directory%26nbsp%3Bcan%26nbsp%3Bconnect%20and%20collaborate%26nbsp%3Busing%26nbsp%3BExternal%26nbsp%3BIdentities%E2%80%94while%20leaving%20the%20user%26nbsp%3BID%2C%20user%20principal%20name%2C%20group%20membership%2C%20and%20app%20assignments%26nbsp%3Bintact.%26nbsp%3BThis%26nbsp%3Ballows%20you%20to%26nbsp%3Bfollow%26nbsp%3Bgovernance%20best%20practices%26nbsp%3Bwhile%20improving%20your%20end%20user%20experience.%26nbsp%3BYou%20can%20try%20out%20the%20public%20preview%20of%20this%20feature%20now.%20Check%20out%26nbsp%3Bthe%20documentation%20to%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fazure%2Factive-directory%2Fb2b%2Finvite-internal-users%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%22%3Elearn%20more%3C%2FA%3E.%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSTRONG%3ESecurely%26nbsp%3Bmanage%26nbsp%3Ball%20your%20external%20identities%26nbsp%3Bat%20scale%3C%2FSTRONG%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EExternal%20Identities%26nbsp%3Bextends%26nbsp%3Bthe%26nbsp%3Bglobal%20availability%2C%20reliability%2C%20and%20scale%26nbsp%3Bof%20Azure%20AD%26nbsp%3Bto%20your%20customers%20and%20partners%26nbsp%3Bwith%26nbsp%3Bbuilt-in%26nbsp%3Bsecurity%26nbsp%3Band%26nbsp%3Bprivacy%26nbsp%3Bas%20top%20priorities.%26nbsp%3BLearn%20more%20about%26nbsp%3BMicrosoft%E2%80%99s%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Fwww.microsoft.com%2Fen-us%2Ftrust-center%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%22%3Ecommitment%20to%26nbsp%3Bsecurity%20and%20data%20privacy%3C%2FA%3E.%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EThis%20is%20just%20the%20beginning%20of%20our%26nbsp%3Bvision%20for%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Fazure.microsoft.com%2Fen-us%2Fservices%2Factive-directory%2Fexternal-identities%2F%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%22%3EExternal%20Identities%3C%2FA%3E.%26nbsp%3BI%26nbsp%3Bhope%20you%E2%80%99ll%26nbsp%3Btry%20out%20these%20public%20preview%20capabilities%20today%20and%26nbsp%3Bshare%20your%20feedback.%26nbsp%3BAnd%20don%E2%80%99t%20hesitate%20to%20ping%20me%20%3CA%20href%3D%22https%3A%2F%2Ftwitter.com%2Frobingo_ms%22%20target%3D%22_blank%22%20rel%3D%22noopener%20nofollow%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%20noopener%20noreferrer%22%3E%40RobinGo_MS%3C%2FA%3E%20if%20you%20have%20any%20feedback%20or%20questions%2C%20I%E2%80%99d%20love%20to%20hear%20from%20you.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EThanks!%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3ERobin%26nbsp%3B%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-TEASER%20id%3D%22lingo-teaser-1257361%22%20slang%3D%22en-US%22%3E%3CP%3E%3CSPAN%3EAzure%20AD%20External%20Identities%20enables%20organizations%20and%20developers%20to%20secure%2C%20manage%20and%20build%20apps%20for%20their%20customers%2C%20partners%20and%20other%20external%20users.%26nbsp%3B%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20image-alt%3D%22WoodgroveBankinLogin.png%22%20style%3D%22width%3A%20999px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Fgxcuf89792.i.lithium.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F193121i3B86C1B8CB8581A0%2Fimage-size%2Flarge%3Fv%3D1.0%26amp%3Bpx%3D999%22%20title%3D%22WoodgroveBankinLogin.png%22%20alt%3D%22WoodgroveBankinLogin.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%3C%2FLINGO-TEASER%3E%3CLINGO-LABS%20id%3D%22lingo-labs-1257361%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EAzure%20Active%20Directory%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1409877%22%20slang%3D%22en-US%22%3ERe%3A%20Evolving%20Azure%20AD%20for%20every%20user%20and%20any%20identity%20with%20External%20Identities%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1409877%22%20slang%3D%22en-US%22%3E%3CP%3EWe're%20excited%20to%20try%20this%20out%20at%20the%20City%20of%20Redmond.%20A%20unified%20identity%20for%20residents%20and%20business%20owners%20to%20use%20to%20authenticate%20across%20the%20many%20services%20we%20offer.%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1410022%22%20slang%3D%22en-US%22%3ERe%3A%20Evolving%20Azure%20AD%20for%20every%20user%20and%20any%20identity%20with%20External%20Identities%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1410022%22%20slang%3D%22en-US%22%3E%3CP%3EWill%20this%20work%20with%20Windows%20Virtual%20Desktop%3F%20That's%20the%20only%20remaining%20use%20case%20we%20have%20to%20create%20an%20external%20user%20(e.g.%20a%20partner%20or%20contractor)%20as%20an%20internal%20ad%20account%20%3Apensive_face%3A%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1410697%22%20slang%3D%22en-US%22%3ERe%3A%20Evolving%20Azure%20AD%20for%20every%20user%20and%20any%20identity%20with%20External%20Identities%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1410697%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F9242%22%20target%3D%22_blank%22%3E%40Thom%20McKiernan%3C%2FA%3E%26nbsp%3Bnot%20yet%2C%20but%20on%20our%20roadmap%2C%20thanks%20for%20the%20feedback%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1413789%22%20slang%3D%22en-US%22%3ERe%3A%20Evolving%20Azure%20AD%20for%20every%20user%20and%20any%20identity%20with%20External%20Identities%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1413789%22%20slang%3D%22en-US%22%3E%3CP%3EWhen%20will%20guidance%20be%20available%20for%20migrating%20existing%20SaaS%20customers%20and%20custom%20signup%2Fsignin%20flows%20from%20AAD%20B2C%2C%20or%20will%20this%20be%20an%20extension%20of%20existing%20features%3F%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1413823%22%20slang%3D%22en-US%22%3ERe%3A%20Evolving%20Azure%20AD%20for%20every%20user%20and%20any%20identity%20with%20External%20Identities%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1413823%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F677827%22%20target%3D%22_blank%22%3E%40gleizerowicz%3C%2FA%3E%26nbsp%3B%20%26nbsp%3BAzure%20AD%20B2C%20supports%20highly%20customized%20experiences.%20At%20this%20time%20External%20Identities%20is%20well%20integrated%20with%20Azure%20AD%20premium%20but%20does%20not%20have%20all%20of%20the%20customizability.%20We%20will%20have%20more%20guidance%20later%20this%20year.%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1414434%22%20slang%3D%22en-US%22%3ERe%3A%20Evolving%20Azure%20AD%20for%20every%20user%20and%20any%20identity%20with%20External%20Identities%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1414434%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F218763%22%20target%3D%22_blank%22%3E%40Robin%20Goldstein%3C%2FA%3E%26nbsp%3BDoes%20this%20mean%20that%20from%20an%20identity%20management%20perspective%20Azure%20AD%20and%20Azure%20AD%20B2C%20are%20identical%3F%20Given%20the%20progress%20being%20done%20on%20the%20Azure%20AD%20front%2C%20which%20use%20cases%20would%20B2C%20handle%20that%20is%20not%20handled%20by%20Azure%20AD%3F%26nbsp%3B%3C%2FP%3E%3CP%3EAre%20there%20plans%20to%20converge%20AD%20B2C%20and%20Azure%20AD%20into%20one%20solution%3F%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1415009%22%20slang%3D%22en-US%22%3ERe%3A%20Evolving%20Azure%20AD%20for%20every%20user%20and%20any%20identity%20with%20External%20Identities%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1415009%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F678130%22%20target%3D%22_blank%22%3E%40bsorek%3C%2FA%3E%26nbsp%3B%40Thanks%20for%20your%20questions.%20At%20this%20time%20we%20have%20merged%20some%20capabilities%20of%20B2C%20in%20to%20Azure%20AD%20to%20extend%20the%20enterprise%20capabilities%20to%20more%20users.%20You%20will%20see%20more%20of%20this%20from%20now%20on.%20However%2C%20as%20of%20today%2C%20Azure%20AD%20B2C%20is%20awesome%20for%20apps%20that%20need%20a%20higher%20level%20of%20customization%20or%20serve%20upwards%20of%20100million%20customers.%3C%2FP%3E%3C%2FLINGO-BODY%3E

Howdy folks,

 

Earlier this week at Microsoft Build, we announced that Azure Active Directory (Azure AD) External Identities is available in public preview. Azure AD customers have given us a ton of feedback that they want a single, integrated identity service for enabling collaboration with partners and customers of all types. That’s what we’re working to deliver, so I’m excited that we’re ready to share this important update with you today!

 

To kick off the discussion, I’ve invited Robin Goldstein, a Principal Group PM Manager on the Microsoft Identity team, to blog about this growing set of capabilities that enable organizations and developers to secure, manage and build apps for customers, partners or any other external users. You’ll find Robin’s blog below.

 

As always, we hope you’ll try out the new features and share feedback through the Azure feedback forum or by following @AzureAD on Twitter. 

 

Regards,

 

Alex

 

-----

 

Hi everyone,

 

I’m Robin and I lead the team’s efforts around B2B, B2C and our auth user experiences.  I’m thrilled to be participating in the Identity blog for the first time to talk about Azure AD External Identities and the new set of features that you can try out today. With Azure AD External Identities, we are making a whole bunch of investments that will make it easier for organizations and developers to secure, manage and build apps that connect with different types of users outside an organization. In case you missed our demo at Microsoft Build, you can watch the on-demand session for free. 

 

Now let me tell you what I’m so excited about. 

 

Organizations are collaborating and connecting with more external users than before, especially as they adapt to remote business environments. At the same time, IT departments are being asked to streamline costs while scaling to connect with a growing external user base of distributors, suppliers, and other business partners. Now more than ever, it is critical for business continuity to have a single, flexible identity solution to secure and manage these dynamic relationships while still protecting their most valuable data and assets.  

 

Build flexible, user-centric experiences for collaboration 

 

Many of our customers and developers use Azure AD and Azure AD B2C because ‘bring your own identity’ is an essential requirement for their applications and business workflows. Previously, we empowered employees to invite users from other organizations to collaborate as guests, and more recently, we have added even more ways for external users to collaborate with the general availability of Google federation and public preview of email one-time passcode

 

Now in public preview, admins and developers can enable self-service sign-up and sign-in for their apps, integrating Google and Facebook IDs in additional to the current set of identity providers. Once integrated, the experience can be continuously updated and customized without changing app code. Check out the documentation to learn more about enabling self-service sign-up with social IDs via the Microsoft Graph API.

 

Configure the end-user experience for sign-up with social identities both in the Azure AD portal and via API.Configure the end-user experience for sign-up with social identities both in the Azure AD portal and via API.

 

 

We know many of our customers rely on Company Brand capabilities to customize the look-and-feel of their identity experiences. Now, using custom user attributes, you can also localize and customize the forms a user fills during the self-service sign-up process. This gives you an easy way to gather more information about users accessing apps and services in your organization. Read the documentation to learn more about customizing attributes for your apps.

 

 

Configure and customize user attribute collection.Configure and customize user attribute collection.

 

You will find all of this in the new External Identities blade in the Azure AD Portal.

 

In the coming weeks, we’ll refresh the preview with support for external API connectors to further extend the experience via approval workflows or other external process. 

        

Protect your customers, apps, and brand 

 

Protecting sensitive data and staying compliant is critical to maintaining user trust. You may already use premium security capabilities of Azure AD such as Conditional Access and Identity Protection to secure your users and applications. These capabilities are also available to secure collaboration with External Identities. 

 

Govern external users more effectively 

 

Many of you may be managing external relationships by creating internal user accounts for every guest in your directory. Now you can convert these users to external users and get the benefits of External Identities. When you invite internal users to B2B collaboration, guest users represented as members in the directory can connect and collaborate using External Identities—while leaving the user ID, user principal name, group membership, and app assignments intact. This allows you to follow governance best practices while improving your end user experience. You can try out the public preview of this feature now. Check out the documentation to learn more

 

Securely manage all your external identities at scale 

 

External Identities extends the global availability, reliability, and scale of Azure AD to your customers and partners with built-in security and privacy as top priorities. Learn more about Microsoft’s commitment to security and data privacy

 

This is just the beginning of our vision for External Identities. I hope you’ll try out these public preview capabilities today and share your feedback. And don’t hesitate to ping me @RobinGo_MS if you have any feedback or questions, I’d love to hear from you.

 

Thanks! 

 

Robin  

7 Comments
Regular Visitor

We're excited to try this out at the City of Redmond. A unified identity for residents and business owners to use to authenticate across the many services we offer.

New Contributor

Will this work with Windows Virtual Desktop? That's the only remaining use case we have to create an external user (e.g. a partner or contractor) as an internal ad account :pensive_face: 

Microsoft

@Thom McKiernan not yet, but on our roadmap, thanks for the feedback

Occasional Visitor

When will guidance be available for migrating existing SaaS customers and custom signup/signin flows from AAD B2C, or will this be an extension of existing features?

Microsoft

@gleizerowicz   Azure AD B2C supports highly customized experiences. At this time External Identities is well integrated with Azure AD premium but does not have all of the customizability. We will have more guidance later this year.

Occasional Visitor

@Robin Goldstein Does this mean that from an identity management perspective Azure AD and Azure AD B2C are identical? Given the progress being done on the Azure AD front, which use cases would B2C handle that is not handled by Azure AD? 

Are there plans to converge AD B2C and Azure AD into one solution? 

Microsoft

@bsorek @Thanks for your questions. At this time we have merged some capabilities of B2C in to Azure AD to extend the enterprise capabilities to more users. You will see more of this from now on. However, as of today, Azure AD B2C is awesome for apps that need a higher level of customization or serve upwards of 100million customers.