Microsoft Certified: Identity and Access Administrator AssociateImplement an identity management solutionMedium
A company is onboarding a large number of external contractors who need temporary access to specific applications and data in their Azure AD tenant. These contractors use their own existing identities from various email providers (e.g., Gmail, Outlook.com). The company wants to streamline the invitation process and allow contractors to use their existing credentials without creating new accounts in the company's Azure AD. Which feature should be implemented?
- AAzure AD Application Proxy
- BAzure AD B2B Collaboration
- CAzure AD Domain Services (Azure AD DS)
- DAzure AD Connect
Show answer & explanationAnswer & explanation
Correct answer: B. Azure AD B2B Collaboration
Azure AD B2B Collaboration is designed for inviting external users (guests) to your Azure AD tenant, allowing them to sign in with their own identities (e.g., Gmail, Outlook.com, or other Azure AD tenants) to access your resources.
Why the other options are wrong
- A. Application Proxy provides secure remote access to on-premises web apps, not external user identity management.
- C. Azure AD DS provides managed domain services for legacy applications, not external user collaboration.
- D. Azure AD Connect synchronizes on-premises AD identities to Azure AD, not external users with existing cloud identities.
Azure AD B2B Collaboration
A feature of Azure Active Directory that allows you to invite external users (guests) to your organization's Azure AD tenant as guest users. These guests can then sign in using their own credentials to access your applications and resources.
- Supports various identity providers (Microsoft accounts, Google, federated domains).
- Guest users are managed within your Azure AD tenant.
- Streamlines external partner collaboration.
Memory trick: Partners enter through B2B, using their own keys.