Summary
This chapter has given us a great insight into the Azure Stack Hub identity model, which is key learning for the AZ-600 exam. We started the chapter with some background and common terminology that we need to understand. From there, we dived into understanding the Azure identity model. This introduced us to the different layers that identity is used for and the various authentication processes we need to be aware of. We were introduced to different token types, such as the JSON Web Token and the access token. We walked through the authentication flow for the Azure Stack Hub portal. We then looked through the different identity providers supported by Azure Stack Hub, AAD, and ADFS. We covered the limitations of choosing ADFS as an identity provider.
Then, we moved on to the AD topologies supported by identity in Azure Stack Hub. We covered the implementation of RBAC and how permissions could be assigned to users in the different AD topologies to access resources in Azure...