Saviynt unveils its cutting-edge Intelligence Suite products to revolutionize Identity Security!
Click HERE to see how Saviynt Intelligence is transforming the industry.
Saviynt Copilot Icon

Need clarification on CPAM support for AzureAD

Saathvik
All-Star
All-Star

Team,

We want to confirm if Saviynt CPAM supports the AzureAD domain accounts for PAM use cases like credential check out , launch RDP sessions, credential-less session to domain etc. similarly like regular AD?

Because when we went through the documentation of Azure it only talks about workloads but not domain. so wanted to confirm if AzureAD supports all use cases that are support by regular AD and can we follow the same documentation of Onboarding AD ?


Regards,
Saathvik
If this reply answered your question, please Accept As Solution and give Kudos to help others facing similar issue.
4 REPLIES 4

sudeshjaiswal
Saviynt Employee
Saviynt Employee

Hello @Saathvik ,

We are looking into it.
For ref: Solved: CPAM setup with Azure - Saviynt Forums - 31416 

Thanks.

If you find the above response useful, Kindly Mark it as "Accept As Solution".

Saathvik
All-Star
All-Star

@sudeshjaiswal : Thanks for referring to post but looks like it is talking about Azure workload not particularly about AzureAD. So that post looks like not helpful in this case. Please let us know what you find on the use case we mentioned

Thanks in Advance!


Regards,
Saathvik
If this reply answered your question, please Accept As Solution and give Kudos to help others facing similar issue.

NageshK
Saviynt Employee
Saviynt Employee

@Saathvik As of 24.7, onboarding Azure AD for PAM is a manual process (ref post : saviynt-cpam-azure-instance). So, it cannot be onboarded like the regular AD. 

For the question on whether we can launch rdp sessions to domain joined windows machines : I have not seen this use case come up so far. It has to be evaluated to see if the reusing the AD remote app configuration to Azure AD would help. 

Are your windows servers joined to a domain being managed in Azure AD?

Thanks

Nagesh K   

@NageshK : Thanks for the response. I went through the post and had a question on point #4 where you mentioned that don't add correlation rule instead asking us to manually correlate? Is there any issue if we use correlation rule?

Also regarding windows server joined to AzureAD domain I will get back to you. As of now I don't have concrete information on this, I was just checking if all the use cases of regular AD are supported by AzureAD or not.


Regards,
Saathvik
If this reply answered your question, please Accept As Solution and give Kudos to help others facing similar issue.