1.0 Understanding the Office 365 and Azure Active Directory Driver

The Identity Manager Driver for Office 365 and Azure Active Directory (Azure AD driver) allows you to seamlessly provision and deprovision users, group memberships, exchange mailboxes, roles, and licenses to Azure AD cloud. You can also configure the driver to integrate with Identity Manager Service for Exchange Online (Identity Manager Exchange Service) for synchronizing Office 365 attributes.

As a known information, Microsoft Office 365 is deprecating the Basic authentication method. To configure the driver with modern authentication, it is recommended to upgrade your driver to 5.1.3 or later, with the prerequisites as explained in, Prerequisites for the Driver, Prerequisites for Identity Manager Exchange Service, and Prerequisites for OAuth 2.0 are met, and then proceed with the Prerequisites for Support of Modern Authentication.

In general, you can perform the following tasks by using the driver:

  • Synchronize users and groups on Publisher and Subscriber channels

  • Provision and deprovision mail and mailbox users, distribution, and mail enabled security and Office 365 groups

  • Assign and revoke roles, group membership, and licenses using entitlements

  • Extend the Azure AD schema

  • Synchronize passwords from the Identity Vault

This section contains high-level conceptual information about the Azure AD driver.