Search icon
Subscription
0
Cart icon
Close icon
You have no products in your basket yet
Arrow left icon
All Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Newsletters
Free Learning
Arrow right icon
Microsoft Identity Manager 2016 Handbook

You're reading from  Microsoft Identity Manager 2016 Handbook

Product type Book
Published in Jul 2016
Publisher Packt
ISBN-13 9781785283925
Pages 692 pages
Edition 1st Edition
Languages
Authors (2):
David Steadman David Steadman
Profile icon David Steadman
Jeff Ingalls Jeff Ingalls
Profile icon Jeff Ingalls
View More author details

Table of Contents (22) Chapters

Microsoft Identity Manager 2016 Handbook
Credits
About the Authors
About the Reviewers
www.PacktPub.com
Preface
1. Overview of Microsoft Identity Manager 2016 2. Installation 3. MIM Sync Configuration 4. MIM Service Configuration 5. User Management 6. Group Management 7. Role-Based Access Control with BHOLD 8. Reducing Threats with PAM 9. Password Management 10. Overview of Certificate Management 11. Installation and the Client Side of Certificate Management 12. Certificate Management Scenarios 13. Reporting 14. Troubleshooting 15. Operations and Best Practices Index

PAM in the MIM service


PAM installed some new objects in the MIM service. Let's take a look at three new objects: PAM roles, PAM requests, and another object called PAM configuration that provides a configurable PAM setting interface. If you were to open up the MIM portal on PRIVPAMSRV, which again is optional, you will immediately see PAM roles and PAM requests, as follows:

If you were to click on the PAM Roles link, you would see an interface to create a new PAM role and delete and see the details of existing PAM roles. Here's the window to create a new PAM role:

  • Display Name: This is the display name of the role.

  • PAM Privileges: This is the security group(s) associated with the role.

  • PAM Role TTL (sec): This is the maximum number of seconds before the role expires and the privileges are removed.

  • MFA Enabled: If checked, this requires the user to use Azure multi-factor authentication (MFA). We will discuss this concept later in the chapter.

  • Approval required: This indicates whether elevation...

lock icon The rest of the chapter is locked
Register for a free Packt account to unlock a world of extra content!
A free Packt account unlocks extra newsletters, articles, discounted offers, and much more. Start advancing your knowledge today.
Unlock this book and the full library FREE for 7 days
Get unlimited access to 7000+ expert-authored eBooks and videos courses covering every tech area you can think of
Renews at $15.99/month. Cancel anytime}