Loading...

Azure AD authentication for Windows Admin Center in Azure is now generally available

Azure AD authentication for Windows Admin Center in Azure is now generally available

We’re excited to announce support for authentication using Microsoft Azure Active Directory (Azure AD), part of Microsoft Entra, with Windows Admin Center in Azure. Customers can now use Azure AD authentication with Windows Admin Center in Azure for both domain and non-domain joined server infrastructure. This exciting capability unites Azure AD authentication with Windows Admin Center to easily manage your server infrastructure. 

 

Last year, we introduced Windows Admin Center in Azure to give you the ability to manage your Windows Server Virtual Machines (VMs) natively from the Azure Portal using your VM’s local administrator password to sign in. This works for VMs running on-premises connected to Azure Arc, or in the cloud as Azure VMs.  

 

We also announced the ability for you to sign in to your Windows Azure Infrastructure as a Service (IaaS) VMs using Azure AD authentication via Microsoft Remote Desktop (RDP). This allows you to join Windows machines to your Azure Active Directory, with centralized control and enforcement with Azure role-based access control (Azure RBAC). With this capability, you don’t have to manage passwords or local administrator accounts to give access to Azure VMs. 

 

Based on your feedback, we’re now supporting Azure AD credentials when using Windows Admin Center in Azure. This enables single sign-on (SSO) and seamless management for your Windows Server instances using Azure AD authentication with Windows Admin Center in Azure. If your Azure AD identity is part of the “Windows Admin Center Administrator Login” Azure RBAC role, you get access to the full suite of management capabilities that Windows Admin Center provides in the Azure Portal.  

 

You can: 

  • Use Azure AD credentials to sign in to your Windows Server VMs: 
    • Running Windows Server 2016 or higher 
    • Running in Azure or Arc-enabled servers running on-premises 
    • Workgroup, domain-joined, or Azure AD-joined 
  • Reduce reliance on local administrator accounts 
  • Get SSO on your Windows Server machines 
  • Use all the protection and security with Azure AD Conditional Access and Identity Protection that are enforced for the Azure Portal (multifactor authentication, compliant device, user/sign-in risk, and others) to protect your Windows Server VMs 
  • Use Azure RBAC to grant the appropriate access to VMs based on need and remove it when it’s no longer needed 

 

Here’s how to set it up 

Add the “Windows Admin Center Administrator Login” role assignment: 

 

SHDriggers_0-1668438564135.png

 

 

Then, connect to Windows Admin Center as you always do: 

 

SHDriggers_1-1668438564141.png

 

 

Windows Admin Center will load without prompting for credentials: 

 

SHDriggers_2-1668438564146.png

 

 

And manage your Windows Server machines: 

 

SHDriggers_3-1668438564153.png

 

 

Getting started 

If you already have Windows Admin Center deployed, all you need to do is ensure your Azure AD identity is part of the “Windows Admin Center Administrator Login” role and your “AdminCenter” extension is running v0.0.0.221 or higher. That's it! Learn more about that process in our Managing a Windows Server VM guide.  

 

If you don’t have Windows Admin Center deployed, follow our documentation to deploy it on your Windows Server Azure IaaS VMs or Arc-enabled infrastructure. 

 

We're so excited to offer this and can't wait to hear what you think. We'd love to hear your feedback at [email protected]. 

Stay safe out there! 

 

Alex Weinert (twitter: @Alex_t_weinert)  

 

 

Learn more about Microsoft identity: 

Published on:

Learn more
Azure Active Directory Identity Blog articles
Azure Active Directory Identity Blog articles

Azure Active Directory Identity Blog articles

Share post:

Related posts

Sync identities from Rippling to Microsoft Entra ID

Today, we’re thrilled to announce that customers using Rippling HCM can now automatically provision users to on-premises Active Directory and ...

1 year ago

Microsoft Entra ID Governance for government

I’m pleased to announce that as of November 1, 2024, Microsoft Entra ID Governance is available for federal agencies, state and local governme...

1 year ago

Update to security defaults

As part of the Secure Future Initiative, we’ve evolved our security approach to align with three security principles: secure by design, secure...

1 year ago

Meet Microsoft Entra at Ignite 2024: November 18-22

Microsoft Ignite is just around the corner, taking place from Monday, November 18, 2024 through Friday, November 22, 2024, in Chicago, Illinoi...

1 year ago

Manage Microsoft Entra ID role assignments with Microsoft Entra ID Governance

I’m excited to announce that we now support Microsoft Entra role assignments in Microsoft Entra ID Governance's Entitlement Management feature...

1 year ago

The latest enhancements in Microsoft Authenticator

Hi folks,   I'm thrilled to announce three major Microsoft Entra ID advancements that will help you protect your users with phishing-resi...

1 year ago

Microsoft Security announcements and demos at Authenticate 2024

The Microsoft Security team is excited to connect with you next week at Authenticate 2024 Conference, taking place October 14 to 16 in Carlsba...

1 year ago

What's new in Microsoft Entra - September 2024

We’re excited to announce the general availability of Microsoft Entra Suite—one of the industry’s most comprehensive secure access solutions f...

1 year ago

Explore the key benefits of Microsoft Entra Private Access

The traditional network security models are becoming increasingly ineffective in a world where remote work and cloud services are the norm. Co...

1 year ago

Join us at the Microsoft Entra Suite Showcase!

This fall, we are bringing the Microsoft Entra Suite Showcase to cities worldwide. Join us to explore how our latest advancements in secure id...

1 year ago

Newsletter

Get the latest Dynamics 365 and Power Platform content in your inbox

A curated digest of community blogs, product news, videos, and podcasts — delivered without the noise.

Weekly updates Unsubscribe anytime Fresh community picks
We use your email only for the newsletter and you can unsubscribe at any time.
By subscribing, you agree to the privacy policy.