Get Started with Azure AD Cross Tenant Access.

preview_player
Показать описание
This time I take a look at what I think will be one of the most important and anticipated new features to come into Microsoft Azure AD for some time. The ability to share and collaborate with an entire tenant rather than individual guests. This powerful new feature will be a major game changer for so many companies who want to collaborate and share resources with partners or child companies. In this session I take you deep into this new feature and explain not only what it is but also how it works. As always if you enjoy the session please give me a big thumbs up and hit the like button.

Timecodes

00:00 Introductions
02:33 Demo: Azure AD External collaboration Settings explained
07:05 Demo: Azure AD Cross tenant access Deep Dive
16:34 Conclusions and next steps
Рекомендации по теме
Комментарии
Автор

I have liked, subscribed and shared to many ones. I just want spread it. Its a really amazing plateform.

Ambedkarites_Indian
Автор

We thank you also for your commitment time and kindness. Always answers to ours queries on Twitter. And to be honest you are a living library

bndsystems
Автор

Wouuu.. Really its amazing.

Mind blowing skill and a great explanation with a wonderful content. Thanks a lot for such a amazing effort.

Thank you.. Keep it up. All the best. Ever i landed over a better channel.

Ambedkarites_Indian
Автор

Hey Andy. Thanks for the video and explanation. However, I feel that during the B2B direct connection settings, the final step you showed of adding the Adatum tenant user to the Contoso tenant group (by inviting them) is actually not right because that then ends up provisioning a Guest user for the Adatum user when they try to access Contoso and that is not the purpose behind B2B direct connect as you explained at the beginning of the video. It should work using the external identity directly as that is what distinguishes it from B2B collaboration.

So this feature should work without inviting or adding those users to some groups or apps in the resource tenant. It should just work without having any knowledge of the external users once both the resource and host tenant have done the necessary inbound/outbound settings. If I am not wrong, the B2B direct connect is limited to only Shared Teams Channels atm (according to MS docs) and that is the reason why it doesn’t work for anything else for now.

I am really looking forward for this feature to work fully as intended since this is a growing requirement for many customers, but at present it is really limited in its scope.

sachinloothra
Автор

So well explained perhaps one of the best in the internet

supriyochatterjee
Автор

Simple, yet detailed explanation! Great video indeed. Thank you! This connected my dots. And is there a way to setup sync b/w other cloud provider tenants into Microsoft Entra? Wouldn't that be cool?

rishinikhilesh
Автор

Hi Andy. Great content. Love your kind of videos with the top level view. Straight forwarded without the geak level. Thanks

oliverhuppe
Автор

Lovely presentation. Thank you, Andy. =) Just want to provide one clarification from Microsoft. B2B Direct Connect only grants access to Teams and only within specific shared Teams channels. The application settings are Teams applications, not any registered application in your Azure tenant. I really wish B2B DC allowed access to anything in our tenant. It would make our lives so much easier.

Theoriginalbassnorma
Автор

Hi Andy,

Thank you for your video! This has been very helpful!
I have an use case where two sister companies access eachothers data (different companies, same owners)
So I'm already very happy that we have the guest users out of the system :)

Now the only issue we still have today is the sharing of calendars between the different tenants.
We are able to share a calendar, but it doesn't get updated on the otherside. So in the end, we only have a copy of ones calendar but we can't see when somebody is available of not available after the sharing has been done or one month from now.

Can we tackle this also with Cross Tenant access or will we need federation for it?

abdelsansgel
Автор

Great video Andy, very useful info. Thanks for that and thanks for all the work you do on your channel. One topic that would be interesting would be Office 365 migration of users from tenant to tenant (for example company merger), I’ve run into this situation myself and the process is a bit convoluted, so any clarification would be useful.

jefff
Автор

Great video! Exactly what I was looking for.

DarrenStenstrom
Автор

Hi @Andy, thank you for this content. I have a question regarding in connecting to Azure SQL Database from PowerApps via AD Authentication and my tenancy in Azure is Guest.
When I connect, I am getting a problem: Login failed for user<token-identified principal>. The server is not currently configured to accept this token.

Do you happen to know the resolution of this?

silencyo
Автор

Love the energy and whole approach awsome

Hayzio
Автор

well explained, if I want to automate the steps how can it be done ?

nitishchauhan
Автор

Thank you for covering this video, love this! I wonder if we have a hybrid Azure AD situation, does on prem tenant trust plays a role here or can it be completely separate just for cloud resource sharing? Is there an impact on GAL?

stokeselena
Автор

awesome, video sir, but i have a question: what to do after inviting the user???

shaikhharoon
Автор

With these settings can a user from another tenant access/sign in to Intune enrolled devices? That as a feature would be very handy for environments where merging tenants would cause too much hassle.

MrMDStreet
Автор

Great Video, but I do not know if it works.
I want to share SharePoint between two tenants. Following your instructions, will it work? I tried looking up the user account, and no luck. It does not find the other corp ser account.

isaackoenig
Автор

Hey Andy thank you for the video. I am curious about cross tenant resources that would require licensing, like Dynamics 365. Any info on such a scenario?

Shalom_Mike
Автор

Can this be done without sending notification?

I wonder if I add a security group to teams on the other tenant, is that gonna work too?

I wonder if this tool would become complete enough so tenant to tenant migration is no longer a must.

sebastienberger