What is a hybrid identity?
In this first section of this chapter, we will recap some definitions and concepts to set a baseline and foundation of knowledge to build from.
Microsoft provides two identity provider (IDP) and Directory Service (DS) solutions; Active Directory (AD) and Azure Active Directory (Azure AD).
In a nutshell, AD is an IDP dedicated to a single organization. It runs as an installed service as part of Windows Server.
Azure AD, in a nutshell, is Microsoft’s multi-tenant, cloud-based, and fully managed IDP and DS. Azure AD can be considered Microsoft’s Identity as a Service (IDaaS).
A hybrid identity provides users with a common identity. This is simply a means to provide users access to resources and services regardless of whether they are cloud-based or on-premises. This approach means less confusion for users and one identity that can be used independently of location or IDP. This can be visualized in the following illustration: