Event banner
Microsoft Entra Permissions Management AMA
Event Ended
Tuesday, Jul 19, 2022, 09:00 AM PDTEvent details
Earlier this month we announced the general availability of Microsoft Entra Permissions Management! We are very excited to announce our Microsoft Entra Permissions Management AMA session!
An AMA is a live text-based online event similar to a “YamJam” on Yammer or an “Ask Me Anything” on Reddit. This AMA gives you the opportunity to connect with Microsoft product experts who will be on hand to answer your questions and listen to feedback.
Feel free to post your questions about Entra Permissions Management anytime in the comments below beforehand, if it fits your schedule or time zone better, though questions will not be answered until the live hour.
Trevor_Rusher
Updated Jul 19, 2022
55 Comments
Sort By
- Trevor_Rusher
Community Manager
Thank you for joining our AMA today! We appreciate all the great questions and hope you learned something new! I'll be locking this event to new questions and sharing a summary of the questions and answers in this space in a bit. - Dean_GrossSilver Contributorwhen can we expect EPM to be fully integrated into Azure?
- lauraviarengo
Microsoft
We launched Permissions Management under the new Entra identity brand, so it is integrated within the new Entra portal: https://entra.microsoft.com- Dean_GrossSilver ContributorWhen I do a search for Entra in the Azure portal it does not get found, It is not listed as a Service, Sentinel cannot monitor it, Azure AD PIM does not work with it, Logs cannot be sent to Log Analytics and much more. There is a long way to go before this product is fully functional
- Dean_GrossSilver Contributoron the Inventory page, it shows Azure (97), which looks like the total number of vms, network interfaces, NSGs, Network watchers, vaults, servers, dbs and sites. Does this mean the monthly bill will be $150x97?
- lauraviarengo
Microsoft
Hi Dean! Permissions Management is a standalone offering priced at $125 per license per year (or $10.40 per license per month). You can access your onboarded resource counts via the licensing page! Licenses will be assigned per resource. Resources include compute resources, container clusters, serverless functions and databases, and are supported across AWS, Azure and GCP.- Yegor_LopatinCopper Contributorlauraviarengo, I think the initial question is where to see the total amount of the resources. Price per resource is clear, what is considered as a resource is also clear, but where to see the total number of resources?
- Dean_GrossSilver ContributorHow come I don't see the option to download a report?
- mrudulag
Microsoft
The download option is available in the custom reports.
- Dean_GrossSilver ContributorWhere is the report scheduling screen. I am not seeing any ability to do that
- Dean_GrossSilver ContributorHow can we send reports to other people?
- mrudulag
Microsoft
You can add other email addresses to the report scheduling screen. Or you can download the report and send it. During the custom report creation, there is an option for the report scheduling.- Dean_GrossSilver Contributorwhat about for standard reports? do I have to create a custom report?
- Dean_GrossSilver ContributorHow should we provide feedback? the normal azure feedback options are not available in EPM
- lauraviarengo
Microsoft
Hi! You can provide feedback via a support ticket: https://entra.microsoft.com/#blade/Microsoft_Azure_Support/NewSupportRequestV3Blade/callerName/ActiveDirectory/issueType/technical
- Dean_GrossSilver Contributorwhere can we find a roadmap of planned improvements and time frames?
- lauraviarengo
Microsoft
We’ll continue to offer roadmap updates via proper channels once they become available!- Dean_GrossSilver Contributorthis is the proper channel, https://azure.microsoft.com/en-us/updates/?query=entra and it does not have anything
- victo1Occasional Reader
Hello,
1) In the discover phase, once the cloud platforms have connected, would the analytics be performed on previous data or would analytics be performed on ongoing data?
2) In the remediate phase, what other options are available besides automatic deletion of permissions post 90 days?
3) In the monitor phase, can you share some detailed aspects that are included in the forensic reports?
- mrudulag
Microsoft
1. Initially, data is collected during onboarding for the date of onboarding. However, after data collector runs, we go back and gather data for 90 days history to refine data collected initially with the historical data. 2. Admins can remediate by assigning correct permissions based on 90 days data. New role creation, permission assignment or removal and permissions on demand for the end users are features of the Remediate phase. 3. User entitlement and usage report, All permissions for Identity report, permissions analytics report with various findings are few reports to name. The alert monitoring is other way to get the notifications.
- AMateos91Iron ContributorHello good afternoon, I would only like to know on one hand, what will be this main security plan for Entra Permissions for corporate clients. And on the other hand, there will be any tiers scalation and what will be their main parameters/quantities? Thank you very much for this hour. Bests!
- Nick_Wryter
Microsoft
What do you mean by main security plan? Entra Permissions Management is like any other Microsoft Entra product, meaning you can submit a support ticket from the Entra admin portal.- AMateos91Iron Contributor
Ok perfect Nick. Thanks for the info!
- Jhaas237Copper Contributor
Hello, What does Microsoft Entra do to protect against:
1. Session cookie theft
2. MiTM attacks like EvilNginx.
And what if a user gets compromised?
- lauraviarengo
Microsoft
Hi Joeri! Permissions Management does not cover these use-cases, I would recommend taking a look at the Entra portfolio to learn more: https://docs.microsoft.com/en-us/entra/- Jhaas237Copper ContributorThank you for your answer. I was hoping the new identity product remediate those 2 big treats for MS identity.