Manage Azure AD Users
Last updated
Last updated
Azure Active Directory (Azure AD) is Microsoftโs cloud-based identity and access management service, which helps your employees sign in and access resources in:
External resources, such as Microsoft 365, the Azure portal, and thousands of other SaaS applications.
Internal resources, such as apps on your corporate network and intranet, along with any cloud apps developed by your own organization.
It's an Active Directoruy in the Azure Cloud.
Manage users, groups, app, and security principals.
It can be linked to on-prem Active Directories.
GUI Management
Command-line management such as Powershell or azure-cli.
Proof of indentity.
Single factor - Username, password.
Multi-factor - Username, password, smartcard.
Controlled access to resources.
There're permissions or policies assigned to groups.
It's a centralized is a centralazed repository of credentials, like.
RBAC Role (a collection of permissions).
Condition Access.
Access Reviews.
Multi-Factor Authentication.
Privileded Identity Management (PIM).
Tenant = An Azure Active Directory instance.
The subscription is associated with the Azure ID Tenant.
Commands Available
Description
Manage applications with AAD Graph.
Create a web application, web API, or native application.
Manage an application's password or certificate credentials.
Delete an application's password or certificate credentials.
List an application's password or certificate credential metadata. (The content of the password or certificate credential is not retrievable.).
Append or overwrite an application's password or certificate credentials.
Delete an application.
List applications.
Manage application owners.
Add an application owner.
List application owners.
Remove an application owner.
Manage an application's OAuth2 permissions.
Add an API permission.
Grant Application & Delegated permissions through admin-consent.
Remove an API permission.
Grant the app an API Delegated permissions.
List API permissions the application has requested.
List Oauth2 permission grants.
Get the details of an application.
Update an application.
Manage domain service with azure active directory.
Create a new domain service with the specified parameters.
The Delete Domain Service operation deletes an existing Domain Service.
List domain services in resource group or in subscription.
Get the specified domain service.
Update the existing deployment properties for domain service.
Place the CLI in a waiting state until a condition of the ad ds is met.
Manage Azure Active Directory groups.
Create a group in the directory.
Delete a group from the directory.
Gets a collection of object IDs of groups of which the specified group is a member.
List groups in the directory.
Manage Azure Active Directory group members.
Add a member to a group.
Check if a member is in a group.
Gets the members of a group.
Remove a member from a group.
Manage Azure Active Directory group owners.
Add a group owner.
List group owners.
Remove a group owner.
Gets group information from the directory.
Show graph information about current signed-in user in CLI.
Get the list of directory objects that are owned by the user.
Gets the details for the currently logged-in user.
Manage Azure Active Directory service principals for automation authentication.
Create a service principal.
Create a service principal and configure its access to Azure resources.
Manage a service principal's credentials.
Delete a service principal's credential.
List a service principal's credentials.
Reset a service principal credential.
Delete a service principal and its role assignments.
List service principals.
Manage service principal owners.
List service principal owners.
Get the details of a service principal.
Update a service principal.
Manage Azure Active Directory users and user authentication.
Create an Azure Active Directory user.
Delete a user.
Get groups of which the user is a member.
List Azure Active Directory users.
Gets user information from the directory.
Update Azure Active Directory users.
Azure PowerShell is designed for managing and administering Azure resources from the command line. Use Azure PowerShell when you want to build automated tools that use the Azure Resource Manager model. Try it out in your browser with Azure Cloud Shell, or install it on your local machine.
Azure PowerShell cmdlets follow a standard naming convention for PowerShell, Verb-Noun
. The verb describes the action (examples include New
, Get
, Set
, Remove
) and the noun describes the resource type (examples include AzVM
, AzKeyVaultCertificate
, AzFirewall
, AzVirtualNetworkGateway
). Nouns in Azure PowerShell always start with the prefix Az
. For the full list of standard verbs, see Approved verbs for PowerShell Commands.