All Azure services

Azure · Security & Identity

Microsoft Entra ID

Cloud identity (formerly Azure AD).

Official docs

Overview

Entra ID provides users, groups, app registrations, OIDC/SAML, conditional access and Workload Identity Federation.

When to use it

  • SSO for QA tooling
  • OIDC from GitHub Actions/Azure DevOps
  • MFA enforcement

Setup

  1. Register app in Entra.
  2. Add federated credentials for CI repos.
  3. Grant API permissions / role assignments.

How to use

Service principal create
az ad sp create-for-rbac --name ci-sp --role contributor --scopes /subscriptions/<id>

QA use cases

  • Keyless CI deploys; per-pipeline SP with least-privilege scope.