Get started with Microsoft 365 Administrative Units

Поделиться
HTML-код
  • Опубликовано: 11 сен 2024
  • Starting life out as a series of simple PowerShell commands, Administrative units or Admin units have evolved to become one of the most must have tools in Azure Active directory and now Microsoft 365. When combine with Privileged Identity management (PIM) it become a critical management tool. In this session, join me as I teach you how to not only create Admin units, but also how they work. A short session, yes! but a critical session in terms of skills.
    Visit me at www.Andymalone...
    Admin Roles: • Role Based Access Cont...

Комментарии • 31

  • @chaosmassive8627
    @chaosmassive8627 2 года назад +3

    can you please do series with SCCM (config manager), especially with co-managing with intune.

  • @tony6626
    @tony6626 2 года назад

    Awesome video and demonstration as always Andy.

    • @AndyMaloneMVP
      @AndyMaloneMVP  2 года назад

      Thanks Tony You m delighted you enjoyed it😊

  • @abdalrahman6124
    @abdalrahman6124 2 года назад

    thank you for your effort, it was helpful

  • @honkamaster
    @honkamaster 2 года назад +1

    Thank you.
    What I would be personally interested is a video with topic Mac in a MS world. As you in admin life use mac. Are there any problems and how to go around those. Can you actually use full PS world with osx etc. :)

    • @shelleygrove1034
      @shelleygrove1034 2 года назад

      Yes I would be interested in that as well Andy. I know you can have a defender sensor on a Mac. But what are the other things you need to consider?

    • @AndyMaloneMVP
      @AndyMaloneMVP  2 года назад

      Hmm interesting. Let me see what I can do. I do know that you deploy it via Endpoint Manager. Perhaps I'll cover that in a follow up session. :-)

    • @shelleygrove1034
      @shelleygrove1034 2 года назад

      @@AndyMaloneMVP thank you Andy. Keep these coming. We have just switched to all these new tools and your videos have really helped.

    • @honkamaster
      @honkamaster 2 года назад

      @@AndyMaloneMVP Sounds promising! And also how to get airplay work with intune enrolled devices. :D and everything would be welcome. Thanks for everything. :D

    • @AndyMaloneMVP
      @AndyMaloneMVP  2 года назад

      @@honkamaster You’re very welcome, and by the way you’ll notice I’m a Mac user😀

  • @patrick__007
    @patrick__007 2 года назад

    Great content Andy!

  • @hhhennig
    @hhhennig 2 года назад

    Love it. .. great

  • @lce_hunter9438
    @lce_hunter9438 2 года назад

    Great video!
    Only one question: is i right understood - there is no option to add users to AU automatically?

    • @AndyMaloneMVP
      @AndyMaloneMVP  2 года назад

      Hey thanks for your comment. Actually there is a way. Announcing dynamic administrative units now available in public preview. I will do a session on this shortly but for now here is some useful documentation for you. techcommunity.microsoft.com/t5/microsoft-entra-azure-ad-blog/azure-ad-rbac-dynamic-administrative-units-now-in-public-preview/ba-p/3185207

  • @hhhennig
    @hhhennig 2 года назад +1

    Question: can you explain , how ot use Access Review to automatically remove guests

    • @AndyMaloneMVP
      @AndyMaloneMVP  2 года назад +2

      Hi Holger. I can do better than that. It would take some time to explain that here but I'll go ahead and schedule this for a future video. I think it would be a good one. In the meantime here's an interesting document that I think you'll find useful :-) docs.microsoft.com/en-us/azure/active-directory/governance/access-reviews-overview Thats an access review. However I think you actually meant an access package which I covered previously here ruclips.net/video/QfoeKq6qkMY/видео.html

  • @ibrahimolaitan1218
    @ibrahimolaitan1218 Год назад

    Hi Andy, great video, So if Obiwan sign in into his account, the Admin center will only be showing the users and groups in the Admin Unit for him to manage?
    I did same configuration, but when i sign into the user account that should be managing the Admin unit, the user does not have access to the admin center.
    Any thought on that.
    Thank you.

    • @AndyMaloneMVP
      @AndyMaloneMVP  Год назад +1

      Make sure that the user is a member of an appropriate admin role. For more documentation visit, learn.microsoft.com

  • @xbeone
    @xbeone 2 года назад

    Thank you and keep it up.

  • @abdulrahman5591
    @abdulrahman5591 Год назад

    Hello Andy Can you tell me how can we do the same with SharePoint adminsitrator role.
    I have set up AU with the SharePoint admin role however while testing with the AU Admin he is unable to se the SP Admin center. Same behavior with the Teams Admin role in AU

    • @AndyMaloneMVP
      @AndyMaloneMVP  Год назад

      SharePoint Admins can now be members of an Admin Unit.

  • @clodola1
    @clodola1 9 месяцев назад

    Hi Andy , did you try and sign in as a User assigned the role of User admin within the scope of the admin unit , Obiwan? Under permissions of the User admin role it states the admin can add users , but this is not not allowed , MS said , only password reset is allowed ,you need to be a global admin or have a Privileged role administrator of the whole Azure Entra ID , Edit: Admin Unit , Role: User administrator, Permissions/General Tab: Information is incorrect, the action listed that a user admin can do is copied from the role permission of user admin in directory level, the user admin in admin unit can manage users within the unit like updating user, etc, but is not able add or remove members.
    MS need to update the incorrect information illustrated regarding eligible permissions of Admin Unit , Role: User administrator

    • @AndyMaloneMVP
      @AndyMaloneMVP  9 месяцев назад

      Indeed you are quite correct. Nicely spotted 👍😊

  • @warrenk9587
    @warrenk9587 2 года назад

    Another good video, Andy. I watched the video that you answered a question to at the end of this video. Do you know if Microsoft has the necessary security in SharePoint that is needed for companies required to implement, National Institute of Standards and Technology (NIST) and Cybersecurity Maturity Model Certification (CMMC)? If so, where might I find the documentation?

    • @AndyMaloneMVP
      @AndyMaloneMVP  2 года назад +1

      This is a great question and I’ll cover it in my next video 😊

    • @warrenk9587
      @warrenk9587 2 года назад

      @@AndyMaloneMVP That would be great! Thank you!

  • @simple-security
    @simple-security 14 дней назад

    how would this work with Purview roles?

    • @AndyMaloneMVP
      @AndyMaloneMVP  14 дней назад

      It’s integrated into Microsoft purview and many of the wizards

    • @simple-security
      @simple-security 13 дней назад

      @@AndyMaloneMVP I'd love to see a demo of this using pim. The AU makes sense but I don't understand how they work with pim and Purview roles, or do we just associate the AU with pim?