AzUpdate: AzureAD Privileged Identity Management with Azure Lighthouse and more

Published Jul 09 2021 12:01 AM 1,957 Views
Microsoft

It's been a sizzling summer so far in the northern hemisphere and while the AzUpdate team is currently on break, news at Microsoft is still occurring. Here what we're covering this week: Azure AD Privileged Identity Management (PIM) integration with Azure Lighthouse is now in public preview, how Windows Package Manager can help you export and import a collection of software and the migration-based Microsoft Learn module of the week.

 

 

Azure AD Privileged Identity Management (PIM) integration with Azure Lighthouse is now in public preview

With organizations constructing hybrid architecture to address current needs of remote workers to run business and mission-critical workloads, it is important that security be considered. Many organizations have been working closely with Azure and Microsoft to keep up to date with the latest guidance and services that Microsoft offers to ensure customer security as well as achieve a zero-trust security strategy, including enforcing least-privileged access for all parties across cloud and hybrid environments. 
 
Microsoft recently announced the latest iteration of their least privilege access via the preview of Azure Active Directory Privileged Identity Management (Azure AD PIM) integration with Azure Lighthouse.  This enables organizations to allow partners to have Just-in-Time access to a privileged role before they can work on the organization's infrastructure. This just-in-time (JIT) access only lasts for up to eight hours, after which the partner's access is automatically removed and goes back to having read-only access to the organization's delegated resources. 

 

Microsoft will be offering a deeper look at Azure Lighthouse at Microsoft Inspire via the following two sessions:
 

There is also a great video resource available which introduces the Microsoft Identity Platform and can be viewed here:

 

 

Exporting and importing a software collection via Windows Package Manager

Looking to rebuild a PC but fear the amount of work it would possibly take to reinstall all the required software that was previously loaded on to it? Fellow Cloud Advocate Sarah Lean has shared her steps on harnessing Windows Package Manager's import and export features to export a list of software installed on your PC and then use that file to install the same software on another machine. 

 

Windows Package Manager export commandWindows Package Manager export command

 

Be sure to review the shared steps here: How to export and import a collection of software via Windows Package Manager

 

MS Learn Module of the Week

Microsoft_Learn_Banner.png

 

Introduction to Azure Migrate for server migration

Discover how Azure Migrate helps you realize the benefits of moving your on-premises VMware or Hyper-V server workloads to Azure infrastructure as a service (IaaS). Learn the process for migrating your workload agent-less, all within the hub.

 

 

In this module, you will learn how to:

  • Explain the migration options for migrating to Azure infrastructure as a service.
  • List the steps of the migration process.

Prerequisites

 

Learn more here: Introduction to Azure Migrate for server migration
 

 

%3CLINGO-SUB%20id%3D%22lingo-sub-2528395%22%20slang%3D%22en-US%22%3EAzUpdate%3A%20AzureAD%20Privileged%20Identity%20Management%20with%20Azure%20Lighthouse%20and%20more%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2528395%22%20slang%3D%22en-US%22%3E%3CP%3EIt's%20been%20a%20sizzling%20summer%20so%20far%20in%20the%20northern%20hemisphere%20and%20while%20the%20AzUpdate%20team%20is%20currently%20on%20break%2C%20news%20at%20Microsoft%20is%20still%20occurring.%20Here%20what%20we're%20covering%20this%20week%3A%20Azure%20AD%20Privileged%20Identity%20Management%20(PIM)%20integration%20with%20Azure%20Lighthouse%20is%20now%20in%20public%20preview%2C%20how%26nbsp%3BWindows%20Package%20Manager%20can%20help%20you%20export%20and%20import%20a%20collection%20of%20software%20and%20the%20migration-based%20Microsoft%20Learn%20module%20of%20the%20week.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3C%2FP%3E%3CDIV%20class%3D%22video-embed-center%20video-embed%22%3E%3CIFRAME%20class%3D%22embedly-embed%22%20src%3D%22https%3A%2F%2Fcdn.embedly.com%2Fwidgets%2Fmedia.html%3Fsrc%3Dhttps%253A%252F%252Fwww.youtube.com%252Fembed%252FgjpbF9VcPOU%253Ffeature%253Doembed%26amp%3Bdisplay_name%3DYouTube%26amp%3Burl%3Dhttps%253A%252F%252Fwww.youtube.com%252Fwatch%253Fv%253DgjpbF9VcPOU%26amp%3Bimage%3Dhttps%253A%252F%252Fi.ytimg.com%252Fvi%252FgjpbF9VcPOU%252Fhqdefault.jpg%26amp%3Bkey%3Dfad07bfa4bd747d3bdea27e17b533c0e%26amp%3Btype%3Dtext%252Fhtml%26amp%3Bschema%3Dyoutube%22%20width%3D%22600%22%20height%3D%22337%22%20scrolling%3D%22no%22%20title%3D%22YouTube%20embed%22%20frameborder%3D%220%22%20allow%3D%22autoplay%3B%20fullscreen%22%20allowfullscreen%3D%22true%22%3E%3C%2FIFRAME%3E%3C%2FDIV%3E%3CP%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CH2%20id%3D%22toc-hId--411643727%22%20id%3D%22toc-hId--412357562%22%3EAzure%20AD%20Privileged%20Identity%20Management%20(PIM)%20integration%20with%20Azure%20Lighthouse%20is%20now%20in%20public%20preview%3C%2FH2%3E%0A%3CP%3EWith%20organizations%20constructing%20hybrid%20architecture%20to%20address%20current%20needs%20of%20remote%20workers%20to%20run%20business%20and%20mission-critical%20workloads%2C%20it%20is%20important%20that%20security%20be%20considered.%20Many%20organizations%20have%20been%20working%20closely%20with%20Azure%20and%20Microsoft%20to%20keep%20up%20to%20date%20with%20the%20latest%20guidance%20and%20services%20that%20Microsoft%20offers%20to%20ensure%20customer%20security%20as%20well%20as%20achieve%20a%20zero-trust%20security%20strategy%2C%20including%20enforcing%20least-privileged%20access%20for%20all%20parties%20across%20cloud%20and%20hybrid%20environments.%26nbsp%3B%3CBR%20%2F%3E%26nbsp%3B%3CBR%20%2F%3E%3CSPAN%3EMicrosoft%20recently%20announced%20the%20latest%20iteration%20of%20their%20least%20privilege%20access%20via%20the%20preview%20of%26nbsp%3B%3C%2FSPAN%3E%3CA%20href%3D%22https%3A%2F%2Fwww.microsoft.com%2Fsecurity%2Fbusiness%2Fidentity-access-management%2Fprivileged-identity-management-pim%3FWT.mc_id%3Dmodinfra-32751-abartolo%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%20data-event%3D%22page-clicked-link%22%20data-bi-id%3D%22page-clicked-link%22%20data-bi-an%3D%22body%22%20data-bi-tn%3D%22undefined%22%3EAzure%20Active%20Directory%20Privileged%20Identity%20Management%3C%2FA%3E%3CSPAN%3E%26nbsp%3B(Azure%20AD%20PIM)%20integration%20with%20Azure%20Lighthouse.%26nbsp%3B%20This%20enables%20organizations%20to%20allow%20partners%20to%20have%20Just-in-Time%20access%26nbsp%3Bto%20a%20privileged%20role%20before%20they%20can%20work%20on%20the%20organization's%20infrastructure.%26nbsp%3BThis%20just-in-time%20(JIT)%20access%20only%20lasts%20for%20up%20to%20eight%20hours%2C%20after%20which%20the%20partner's%20access%20is%20automatically%20removed%20and%20goes%20back%20to%20having%20read-only%20access%20to%20the%20organization's%20delegated%20resources.%26nbsp%3B%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%3CSPAN%3E%26nbsp%3B%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3EMicrosoft%20will%20be%20offering%20a%20deeper%20look%20at%20Azure%20Lighthouse%20at%20Microsoft%20Inspire%20via%20the%20following%20two%20sessions%3A%3CBR%20%2F%3E%26nbsp%3B%3C%2FP%3E%0A%3CUL%3E%0A%3CLI%3E%3CSTRONG%3E%3CA%20href%3D%22https%3A%2F%2Fmyinspire.microsoft.com%2Fsessions%2F491f75b4-3759-4b8e-947b-2fefdc807758%3Fsource%3Dsessions%26amp%3BWT.mc_id%3Dmodinfra-32751-abartolo%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%20data-event%3D%22page-clicked-link%22%20data-bi-id%3D%22page-clicked-link%22%20data-bi-an%3D%22body%22%20data-bi-tn%3D%22undefined%22%3ECreate%20hybrid%20and%20multi-cloud%20strategies%20with%20Microsoft%20Azure%3C%2FA%3E%3CSPAN%3E%26nbsp%3B%3C%2FSPAN%3E%3C%2FSTRONG%3Edives%20into%20Azure%20tools%20and%20services%20available%20to%20help%20partners%20extend%20their%20Azure%20practice%20to%20datacenter%2C%20edge%2C%20and%20multi-cloud.%3C%2FLI%3E%0A%3CLI%3E%3CA%20href%3D%22https%3A%2F%2Fmyinspire.microsoft.com%2Fsessions%2Fe188f6be-8e4c-4bab-9083-f8e1851abc37%3Fsource%3Dsessionshttps%3A%2F%2Fmyinspire.microsoft.com%2Fsessions%2F491f75b4-3759-4b8e-947b-2fefdc807758%3Fsource%3Dsessions%26amp%3BWT.mc_id%3Dmodinfra-32751-abartolo%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%20data-event%3D%22page-clicked-link%22%20data-bi-id%3D%22page-clicked-link%22%20data-bi-an%3D%22body%22%20data-bi-tn%3D%22undefined%22%3E%3CSTRONG%3EBuilding%20Profitable%20and%20Secure%20Managed%20Services%20on%20Azure%20with%20Azure%20Lighthouse%20and%20Azure%20Arc%3C%2FSTRONG%3E%3C%2FA%3E%3CSPAN%3E%26nbsp%3B%3C%2FSPAN%3Eexplores%20successful%20partner%20scenarios%20that%20utilized%20the%20native%20Azure%20tools%20to%20develop%20a%20hybrid%20and%20multi-cloud%20approach.%3C%2FLI%3E%0A%3C%2FUL%3E%0A%3CP%3EThere%20is%20also%20a%20great%20video%20resource%20available%20which%20introduces%20the%20Microsoft%20Identity%20Platform%20and%20can%20be%20viewed%20here%3A%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CIFRAME%20src%3D%22https%3A%2F%2Fchannel9.msdn.com%2FShows%2FAzure-Friday%2FAn-introduction-to-the-Microsoft-identity-platform%2Fplayer%3FWT.mc_id%3Dmodinfra-32751-abartolo%22%20width%3D%22640%22%20height%3D%22360%22%20frameborder%3D%220%22%20allowfullscreen%3D%22allowfullscreen%22%20title%3D%22An%20introduction%20to%20the%20Microsoft%20identity%20platform%22%3E%3C%2FIFRAME%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CH2%20id%3D%22toc-hId-2075869106%22%20id%3D%22toc-hId-2075155271%22%3EExporting%20and%20importing%20a%20software%20collection%20via%20Windows%20Package%20Manager%3C%2FH2%3E%0A%3CP%3ELooking%20to%20rebuild%20a%20PC%20but%20fear%20the%20amount%20of%20work%20it%20would%20possibly%20take%20to%20reinstall%20all%20the%20required%20software%20that%20was%20previously%20loaded%20on%20to%20it%3F%20Fellow%20Cloud%20Advocate%20Sarah%20Lean%20has%20shared%20her%20steps%20on%20harnessing%20Windows%20Package%20Manager's%20import%20and%20export%20features%20to%20export%20a%20list%20of%20software%20installed%20on%20your%20PC%20and%20then%20use%20that%20file%20to%20install%20the%20same%20software%20on%20another%20machine.%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20image-alt%3D%22wingetexport1.PNG%22%20style%3D%22width%3A%20400px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F294488i4AED460D91928DAC%2Fimage-size%2Fmedium%3Fv%3Dv2%26amp%3Bpx%3D400%22%20role%3D%22button%22%20title%3D%22wingetexport1.PNG%22%20alt%3D%22Windows%20Package%20Manager%20export%20command%22%20%2F%3E%3CSPAN%20class%3D%22lia-inline-image-caption%22%20onclick%3D%22event.preventDefault()%3B%22%3EWindows%20Package%20Manager%20export%20command%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EBe%20sure%20to%20review%20the%20shared%20steps%20here%3A%26nbsp%3B%3CSTRONG%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fitops-talk-blog%2Fwindows-package-manager-can-help-you-export-and-import-a%2Fba-p%2F2515328%3FWT.mc_id%3Dmodinfra-32751-abartolo%22%20target%3D%22_blank%22%3EHow%20to%20export%20and%20import%20a%20collection%20of%20software%20via%20Windows%20Package%20Manager%3C%2FA%3E%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CH2%20id%3D%22toc-hId-268414643%22%20id%3D%22toc-hId-267700808%22%3EMS%20Learn%20Module%20of%20the%20Week%3C%2FH2%3E%0A%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20image-alt%3D%22Microsoft_Learn_Banner.png%22%20style%3D%22width%3A%20400px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F190049i38377B7EE73EB531%2Fimage-size%2Fmedium%3Fv%3Dv2%26amp%3Bpx%3D400%22%20role%3D%22button%22%20title%3D%22Microsoft_Learn_Banner.png%22%20alt%3D%22Microsoft_Learn_Banner.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CH3%20id%3D%22toc-hId-958976117%22%20id%3D%22toc-hId-958262282%22%3EIntroduction%20to%20Azure%20Migrate%20for%20server%20migration%3C%2FH3%3E%0A%3CP%3E%3CSPAN%3EDiscover%20how%20Azure%20Migrate%20helps%20you%20realize%20the%20benefits%20of%20moving%20your%20on-premises%20VMware%20or%20Hyper-V%20server%20workloads%20to%20Azure%20infrastructure%20as%20a%20service%20(IaaS).%20Learn%20the%20process%20for%20migrating%20your%20workload%20agent-less%2C%20all%20within%20the%20hub.%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%3CSPAN%3E%26nbsp%3B%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Flearn%2Fmodules%2Fm365-azure-migrate-introduction%2F%3FWT.mc_id%3Dmodinfra-32751-abartolo%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3E%3CIMG%20src%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Flearn%2Fachievements%2Fintroduction-azure-migrate-server-migration.svg%3FWT.mc_id%3Dmodinfra-32751-abartolo%22%20border%3D%220%22%20width%3D%22113%22%20height%3D%22113%22%20%2F%3E%3C%2FA%3E%3C%2FP%3E%0A%3CP%3E%3CSPAN%3E%26nbsp%3B%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3EIn%20this%20module%2C%20you%20will%20learn%20how%20to%3A%3CBR%20%2F%3E%3CBR%20%2F%3E%3C%2FP%3E%0A%3CUL%3E%0A%3CLI%3EExplain%20the%20migration%20options%20for%20migrating%20to%20Azure%20infrastructure%20as%20a%20service.%3C%2FLI%3E%0A%3CLI%3EList%20the%20steps%20of%20the%20migration%20process.%3C%2FLI%3E%0A%3C%2FUL%3E%0A%3CH3%20id%3D%22toc-hId--848478346%22%20id%3D%22toc-hId--849192181%22%3EPrerequisites%3C%2FH3%3E%0A%3CUL%3E%0A%3CLI%3EBasic%20understanding%20of%20Microsoft%20Azure.%20If%20you're%20unfamiliar%20with%20this%2C%20we%20recommend%20you%20take%3CSPAN%3E%26nbsp%3B%3C%2FSPAN%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Flearn%2Fpaths%2Fazure-fundamentals%2F%3FWT.mc_id%3Dmodinfra-32751-abartolo%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%20data-linktype%3D%22absolute-path%22%3EMicrosoft%20Azure%20Fundamentals%3C%2FA%3E.%3C%2FLI%3E%0A%3C%2FUL%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSPAN%3ELearn%20more%20here%3A%26nbsp%3B%3CSTRONG%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Flearn%2Fmodules%2Fm365-azure-migrate-introduction%2F%3FWT.mc_id%3Dmodinfra-32751-abartolo%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3EIntroduction%20to%20Azure%20Migrate%20for%20server%20migration%3C%2FA%3E%3C%2FSTRONG%3E%3CBR%20%2F%3E%26nbsp%3B%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Flearn%2Fmodules%2Fm365-azure-migrate-introduction%2F%3FWT.mc_id%3Dmodinfra-32751-abartolo%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3E%3CIMG%20src%3D%22https%3A%2F%2Fcsc.docs.microsoft.com%2Fignite%2FImages%2Fimage_medals.svg%3FWT.mc_id%3Dmodinfra-30986-abartolo%22%20border%3D%220%22%20width%3D%2287%22%20height%3D%2297%22%20%2F%3E%3C%2FA%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-TEASER%20id%3D%22lingo-teaser-2528395%22%20slang%3D%22en-US%22%3E%3CP%3EIt's%20been%20a%20sizzling%20summer%20so%20far%20in%20the%20northern%20hemisphere%20and%20while%20the%20AzUpdate%20team%20is%20currently%20on%20break%2C%20news%20at%20Microsoft%20is%20still%20occurring.%20Here%20what%20we're%20covering%20this%20week%3A%20Azure%20AD%20Privileged%20Identity%20Management%20(PIM)%20integration%20with%20Azure%20Lighthouse%20is%20now%20in%20public%20preview%2C%20how%26nbsp%3BWindows%20Package%20Manager%20can%20help%20you%20export%20and%20import%20a%20collection%20of%20software%20and%20the%20migration-based%20Microsoft%20Learn%20module%20of%20the%20week.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20image-alt%3D%22AzUpdate_News_migration_tool_azureAD_privliged.png%22%20style%3D%22width%3A%20999px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F294387i6F9B6D910FBD33A0%2Fimage-size%2Flarge%3Fv%3Dv2%26amp%3Bpx%3D999%22%20role%3D%22button%22%20title%3D%22AzUpdate_News_migration_tool_azureAD_privliged.png%22%20alt%3D%22AzUpdate_News_migration_tool_azureAD_privliged.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%3C%2FLINGO-TEASER%3E%3CLINGO-LABS%20id%3D%22lingo-labs-2528395%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EAnthony%20Bartolo%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EAzUpdate%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EAzure%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EWindows%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E
Co-Authors
Version history
Last update:
‎Jul 09 2021 05:44 AM
Updated by: