- Mastering Identity and Access Management with Microsoft Azure
- Jochen Nickel
- 305字
- 2021-07-02 12:57:16
Configure dynamic group memberships
In the next section, we will configure straightforward dynamic group memberships to use the department attribute to add users to their department group and build up a dynamic licensing assignment. Group-based licensing currently does not support groups that contain other groups (nested groups).
When enabling dynamic groups, current memberships will be lost.
The usage location of a user needs to be set to assign a license.
As the admin@domain.onmicrosoft.com, choose the Accounting group, navigate to properties, and change the membership type to Dynamic User.
Create a simple rule, department Equals (-eq) Accounting:

Set the department attribute (profile section) on the accounting users Brian Cox and Jeff Simpson to Accounting:

The member should be added automatically. Check the group membership and verify the two new members:

Next, we will provide an automatic licensing solution.
Create the following security group:
- Office 365 full feature licensing
- Group description: Automatic Office 365 Full Feature Licensing
- Membership type: Dynamic User
- Dynamic query: userType -eq Member:

Under Licenses | Products, assign the Office 365 E5 plan. Don't choose any assignment options at the moment:

Wait until the membership has updated and check the license assignment for Don.Hall@domain.onmicrosoft.com.
You will see that the user gets the license through a direct and group-based assignment:

In the next section, we will configure role assignments to administrative units.
- 網絡空間攻防技術原理
- 工業互聯網安全
- Rootkit和Bootkit:現代惡意軟件逆向分析和下一代威脅
- Wireshark 2 Quick Start Guide
- 數字安全藍皮書:本質屬性與重要特征
- Getting Started with FortiGate
- 數據安全實踐指南
- .NET安全攻防指南(上冊)
- Kali Linux Wireless Penetration Testing Cookbook
- 硬黑客:智能硬件生死之戰
- Kerberos域網絡安全從入門到精通
- End to End GUI Development with Qt5
- 無線傳感器網絡安全與加權復雜網絡抗毀性建模分析
- Practical Internet of Things Security
- Kali Linux無線網絡滲透測試詳解