Managing Access
In this chapter, we will journey through the process of managing access within Azure Virtual Desktop (AVD). First, we’ll look at planning, managing, and restricting access to AVD resources. This consists of exploring how role-based access control (RBAC) works in combination with the permissions that must be synchronized with the Active Directory domain. We will also briefly look at Group Policy and the value it brings to a virtual desktop environment.
In this chapter, we will cover the following topics:
- Introduction to Azure RBAC
- Planning and implementing Azure role-based controls
- The delegated access model
- Assigning RBAC roles to IT admins
- Creating a custom role using rights assignments
- Configuring user restrictions by using Entra ID groups