Microsoft Azure Managed Identity Deep Dive

  Рет қаралды 88,085

John Savill's Technical Training

John Savill's Technical Training

Күн бұрын

Пікірлер: 98
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
Hey everyone, welcome to this video all about managed identities! Please make sure to read the description for the chapters and key information about this video and others. ⚠ P L E A S E N O T E ⚠ 🔎 If you are looking for content on a particular topic search the channel. If I have something it will be there! 🕰 I don't discuss future content nor take requests for future content so please don't ask 😇 Thanks for watching! ☁🤙💪
@maneesh981
@maneesh981 2 жыл бұрын
You are Marvellous Super Genius
@_rmc
@_rmc 2 жыл бұрын
The best bit about studying Azure isn’t only the curated learn cert paths but also that John somehow manages to bring out a new view about a month or two ahead of my learning curve; the deep dive videos are the best way to get ahead quickly and then read the docs and get hands on at a slower pace. Excellent as always John. Always looking forward to what comes next ;)
@robadobdob
@robadobdob 2 жыл бұрын
I've literally just picked up a task to convert our apps to use Managed Identity so this video has been a godsend for explaining the ins and outs of it.
@lj7894
@lj7894 2 жыл бұрын
"Simplicity is Intelligence " Jiddu Krishnamurti - thank you John for makings things in Azure simple again! :)
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
My pleasure! Thank you!
@lltagged
@lltagged 8 ай бұрын
Great way to spend a saturday evening: Watching John explain stuff you did not know before.
@yasimatech9769
@yasimatech9769 10 ай бұрын
Many thanks John, really learnt a lot from this session on managed identities in Entra ID (aka Azure). You've really nailed it in my head 💯
@rgulamhussein
@rgulamhussein 2 жыл бұрын
Thank you for such a clear explanation John. Your video is worth a thousand pages of docs!
@Semtx552
@Semtx552 2 жыл бұрын
incredibly valuable info, cheers! Especially the start where you articulate the ent app / reg app / SP interaction. i still struggle with that bit. I will rewatch your video dedicated to that subject.
@robbrinkkemper1702
@robbrinkkemper1702 11 ай бұрын
I'm really thankful for the lessons learned from Azure Managed Identities. They've been incredibly valuable.😊📚🙏
@NTFAQGuy
@NTFAQGuy 11 ай бұрын
Happy to hear that!
@expat64
@expat64 2 жыл бұрын
Outstanding session John! I knew a fair bit of this already, but you clarified the picture, as you always do, and filled the remaining gaps for me. This will also be invaluable training for my team! 🙂
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
Awesome to hear! 🤙
@JeevarajanKumar
@JeevarajanKumar 2 жыл бұрын
+1
@toddhu2498
@toddhu2498 Жыл бұрын
I struggle a long time how MI magically dealt all the headache in SP. read all type of docs but always the information is here and there. The IMDS AND MIRP is really the key, surprisingly this video can use 40min to explain all my question that I researched like 1 week..
@niraj7616
@niraj7616 2 жыл бұрын
Excellent, watching this with a cup of tea in cold England 🥶 👍
@TechChefMM
@TechChefMM 2 жыл бұрын
Absolutely Excellent Azure Managed Identity lesson/explanation! John Savill, you are an Azure evangelist Super Hero!!! I truly appreciate you! MM
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
Thank you
@robannmateja5000
@robannmateja5000 2 жыл бұрын
Listened to this again for the second time (refresher). As usual, awesome content and presentation. Thank you!
@gunknown370
@gunknown370 2 жыл бұрын
I'm studying for the az-500 and your content is just the best out there! thanks for this
@gwcooley
@gwcooley 2 жыл бұрын
Great overview, excellent engaging teaching style. Thank you. Onward and upward!
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
Glad you enjoyed it!
@cma9br
@cma9br 2 жыл бұрын
I am a big fan of managed identities and you make things easy to learn
@s3999
@s3999 2 жыл бұрын
John, that video is simply brilliant. Kudos to you.
@amirjsayes
@amirjsayes Жыл бұрын
Amazing 48 minutes of great content! Great work John 🎉
@amirjsayes
@amirjsayes Жыл бұрын
Simply outstanding! Very clear and very informative and enjoyable to watch 💪🏼 Keep up the great work
@timurkalizhanov5281
@timurkalizhanov5281 9 ай бұрын
Very clear, structured and detailed explanation! Thank you very, very much for what you are doing!!!!
@NTFAQGuy
@NTFAQGuy 9 ай бұрын
You're very welcome!
@cnchandroo
@cnchandroo 2 жыл бұрын
Thank you John for yet another wonderful session. It helped me to understand better how MI works internally and used with Azure resources for access management.
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
Wonderful!
@chouaibhelmi
@chouaibhelmi 9 ай бұрын
John the way you explain is just amazing ; that whiteboard is the best i have ever seen, it has a true Power 😁>>>>>>>> thanks for these series
@NTFAQGuy
@NTFAQGuy 9 ай бұрын
Welcome!
@agostinopugliese5288
@agostinopugliese5288 2 жыл бұрын
John, this video is amazing as always. Kudos to you
@naveenkumarn9917
@naveenkumarn9917 2 жыл бұрын
Good content and delivery.Well prepared commands. Really helped me to visualize. Thanks John
@wolkwijs324
@wolkwijs324 2 жыл бұрын
Again a gem of a video! Thanks for another great deep dive!
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
Very welcome 🤙
@a29miller
@a29miller Жыл бұрын
Great Video! Gave me a much better understanding of this managed identity topic!!
@atulpatel8708
@atulpatel8708 2 жыл бұрын
Fantastic video on Azure Managed Identities, thank-you so much !
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
You are welcome
@michield6812
@michield6812 Жыл бұрын
Outstanding presentation. A lot of information in a short time.
@wesleygyger1210
@wesleygyger1210 2 жыл бұрын
Good stuff. I didn't know what I didn't know until I watched this. Thanks for helping me understand this.
@ehickeytube
@ehickeytube 2 жыл бұрын
Thanks John. Great content and better delivery
@RonaldoCorrea-v2j
@RonaldoCorrea-v2j Күн бұрын
Excellent! thanks for sharing so much details about identities.
@NTFAQGuy
@NTFAQGuy Күн бұрын
Glad you liked it!
@rupeshchoudhary9237
@rupeshchoudhary9237 Жыл бұрын
Great teaching skills. .loved the whole explanation Bit . I would love enroll for a course on whole azure series if any.
@ravikumarmistry
@ravikumarmistry 5 ай бұрын
Great as always
@matthewmarquis4266
@matthewmarquis4266 Жыл бұрын
Thank you so much for this break down
@sylviawylie9218
@sylviawylie9218 6 ай бұрын
Generic comment to show my appreciation. Keep winning John!
@expat64
@expat64 2 жыл бұрын
So John, am I right in thinking that, in your VM scenario, anybody who can log into the VM implicitly has permission to use any of the MIs assigned to the VM, meaning you need to be aware that when granting somebody access to the VM, you are also granting them permission to use the MI, and if so, is this something that should be highlighted?
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
Right anything within that vm can use the MIs associated with it.
@va55ag0
@va55ag0 2 жыл бұрын
Thanks again for another great video. Quick question about my scenario: My app is an API and, and therefore has its own App Registration (an identity!). It accesses Azure Storage accounts plus makes calls other APIs using Oauth 2.0 client credentials flows (I.e. I have to grant my app registration permission to the scopes of the other app registrations). In this scenario, would you still recommend using the managed identity to access the Azure resources? To me, it seems strange for my app to have multiple identities.
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
like all consulting i think it depends :-) there are resiliency benefits as i talked about but maybe the complexity not worth it for you to have multiple.
@christianibiri
@christianibiri 2 жыл бұрын
I learned a lot with this video! thank you sir!
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
Welcome
@islamtoghuj
@islamtoghuj Жыл бұрын
Thank you our brother.
@olegshalnov1028
@olegshalnov1028 2 жыл бұрын
Great article! Thank you for doing this!
@michaelwaterman3553
@michaelwaterman3553 Жыл бұрын
This is freaking brilliant!!! Thanks 🙏
@NTFAQGuy
@NTFAQGuy Жыл бұрын
Glad you like it!
@JeremyTBradshaw
@JeremyTBradshaw 2 жыл бұрын
That was really great! Thanks very much.
@wreadd
@wreadd 2 ай бұрын
Make sure to use powershell 7 and not 5! powershell 7 natively uses higher tls versions that are needed and we experiences tls/cipher issues because powershell 5 couldnt negotiate to azure to match tls versions. once we installed powershell 7 it worked great.
@BhanuPratap88
@BhanuPratap88 2 жыл бұрын
Thanks a lot great explanation of a very complex topic 👏👏
@James-sc1lz
@James-sc1lz 2 жыл бұрын
I needed this and you explained it really well as usual so thank you
@chaddoyle6911
@chaddoyle6911 2 жыл бұрын
Super Cool Stuff! I’ve just started learning these concepts and your teaching style is quite good. I have a question that came out of this video and that is that recently I decided to use a system mi even though there were multiple resources that could benefit from a user mi. I think I did it because there were trade off(s). Is there a simple answer and if not would you consider talking about the differences or sending me a link where you have talked about them?
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
I talked about why use UA-MI in the video. Don't really have anythign beyond what I explained.
@omartin2009
@omartin2009 2 жыл бұрын
Excellent as always!! How do apps, once IMDS (in the example of the VM), gets the refreshed token? I guess as a dev (or a user of the VM), I'd have to manually get a refresh token (or code that to refresh the token every now and depending on the kind of resource) by doing some kind of CURL request (or PS or other method) because the token I downloaded at t=0 will become invalid at t=12h, right?
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
There is no refresh token. As I said in videos its app only flow with long lived access token. MSAL etc will take care.
@hutchm92
@hutchm92 9 ай бұрын
Great explanation!
@NTFAQGuy
@NTFAQGuy 9 ай бұрын
Glad it was helpful!
@Mo-iu3jf
@Mo-iu3jf 2 жыл бұрын
Awesome video, thanks a lot for sharing
@oliviermalfroidt6405
@oliviermalfroidt6405 2 жыл бұрын
Thank you for this amazing content.
@ranajitjana4030
@ranajitjana4030 2 жыл бұрын
Too good. Thank you for the video
@cdoex1
@cdoex1 2 жыл бұрын
Thank you, this was a very good MI deep dive. But is it possible to have an even deeper dive? Regarding the IMDS endpoint in the example there were no authentication to that service present, so I guess that is handled some other way? The AppService MI sidecar uses some sort of internally injected private key for that) (In certain situations using the C# libraries for this, the proactive token refresh seems to not start after 12h, or half the token lifetime, but rather 5m before expiry, resiliency effectively defeated...)
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
I don't think a deeper dive would be of interest to most. I gave detail on how it works but really all you care about is in your service/language how to request it.
@cdoex1
@cdoex1 2 жыл бұрын
@@NTFAQGuy Thank you, I managed to find the documentation that told the story on how IMDS worked and even posted the link here in a response to my comment above, but now that response seems to be missing.
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
@@cdoex1 I did include in the video description the link to the MS how it works. Links in comments are disabled so thats likely why not showing.
@cdoex1
@cdoex1 2 жыл бұрын
@@NTFAQGuy Ah, of course, but who reads the description 🤦‍♂🤦‍♂ sorry...
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
@@cdoex1 lol
@lawrencecroft1580
@lawrencecroft1580 3 ай бұрын
That was a very helpful video
@fxylk
@fxylk 2 жыл бұрын
Amazing 🤩
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
Thanks 🤙
@StarvedForTime
@StarvedForTime 2 жыл бұрын
This video saved my ass. Liked and subbed
@lightyagami0ben
@lightyagami0ben 2 жыл бұрын
Great content !
@antoniemerks1375
@antoniemerks1375 Жыл бұрын
Thanks
@MrZakiHaider
@MrZakiHaider 2 жыл бұрын
Great. thank you :)
@HenryBuild-sp6or
@HenryBuild-sp6or 2 жыл бұрын
your biceps as a load balancer :)
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
lol
@AleksandarIvanov69
@AleksandarIvanov69 2 жыл бұрын
For the algorithm! 😁
@RonaldPostelmans
@RonaldPostelmans 2 жыл бұрын
create explanation of managed identities, thanks
@jatinnandwani6678
@jatinnandwani6678 2 жыл бұрын
Hey John thanks so much Can I buy you a coffee or can you please enable some method of contributing back to this channel
@NTFAQGuy
@NTFAQGuy 2 жыл бұрын
That’s very kind but I don’t want to earn money from this channel. It’s my way of giving back to the community which is why I have no adverts etc. Just help spread word of the channel and help it grow would be awesome 🤙
@jean-baptistelasselle4562
@jean-baptistelasselle4562 Жыл бұрын
"some people" 😂🤣
@enlgn7050
@enlgn7050 3 ай бұрын
Its absolutely illegal that all of this content is for free.
Active Directory Domain Service Deep Dive
1:00:09
John Savill's Technical Training
Рет қаралды 74 М.
Microsoft Azure AD Identity Protection Deep Dive
56:26
John Savill's Technical Training
Рет қаралды 42 М.
FOREVER BUNNY
00:14
Natan por Aí
Рет қаралды 24 МЛН
Мама у нас строгая
00:20
VAVAN
Рет қаралды 10 МЛН
How To Choose Mac N Cheese Date Night.. 🧀
00:58
Jojo Sim
Рет қаралды 87 МЛН
Managed Identities with Azure AD (Active Directory) Tutorial
31:54
Adam Marczak - Azure for Everyone
Рет қаралды 148 М.
Understanding Microsoft Azure Availability Zones!
16:05
John Savill's Technical Training
Рет қаралды 41 М.
Microsoft Azure Application Gateway Deep Dive
1:03:29
John Savill's Technical Training
Рет қаралды 118 М.
Azure API Management Deep Dive
1:10:15
John Savill's Technical Training
Рет қаралды 20 М.
Azure Master Class v2 - Module 10 - Monitoring & Security
2:07:58
John Savill's Technical Training
Рет қаралды 67 М.
Microsoft Azure Front Door Deep Dive
40:21
John Savill's Technical Training
Рет қаралды 80 М.
SC-300 Microsoft Identity and Access Administrator Study Cram
2:43:29
John Savill's Technical Training
Рет қаралды 208 М.
Microsoft Azure Private Link Deep Dive
57:02
John Savill's Technical Training
Рет қаралды 101 М.
Azure Key Vault Deep Dive (AZ-500)
1:07:43
John Savill's Technical Training
Рет қаралды 82 М.
FOREVER BUNNY
00:14
Natan por Aí
Рет қаралды 24 МЛН