Azure Active Directory Integration

    laptop_Azure-Integration

    Azure Active Directory is Microsoft's directory service for managing user identities, groups and access across an organization. Connecting ecos to Azure AD keeps your key and asset access fully in step with the directory: users and their groups are synchronized into ecos, so administration is done once in Azure AD and applies to your cabinets and lockers too.

    GENERAL INTEGRATION

    ecos performs a full user synchronization with Azure Active Directory through the Microsoft identity APIs. Users and their group memberships are read from Azure AD into ecos webman on an ongoing basis, bringing across the details that identify each person — name, e-mail and department — so there is no separate user list to maintain for your key and asset management.

    1480560_675

    How it works

    integration_icons_connect-system

    Connect ecos webman to your Azure Active Directory tenant, authorizing access and entering the connection details Microsoft requires.

    integration_icons_import-user-group

    Bring your Azure AD groups into ecos, where they are reflected as user groups, so your existing team structure drives access without being rebuilt by hand.

    integration_icons_automated-user-group-update

    ecos synchronizes users and group changes on an ongoing basis, keeping access aligned with Azure AD as people join, move or leave.

    integration_icons_withdraw-user-access

    When a user is disabled or removed in Azure AD, their access to your ecos products is withdrawn automatically at the next synchronization.

    Key Features

    Full directory user sync

    Users are created and kept up to date in ecos directly from Azure AD, with their name, e-mail and department carried over, so no one is set up or maintained by hand.

    Azure AD groups become ecos roles (RBAC)

    Your Azure AD groups — Marketing, Security, Facilities and the rest — are reflected as user groups in ecos, so you never rebuild your team structure. What each group is allowed to do with your cabinets and lockers is then defined once, inside ecos.

    Single sign-on for operators

    Administrators and operators sign in with their Microsoft credentials, maintaining consistent authentication with the rest of your Microsoft environment.

    Automatic updates and de-provisioning

    Changes in Azure AD flow through on an ongoing basis, and when someone leaves or loses a role, their access to your ecos products is revoked automatically.

    One directory for people, doors, keys and assets.

    Synchronize users and groups from Azure Active Directory, map access to your existing structure, and enable single sign-on — so key and asset access always tracks your directory.

    ecossystems-iso27001-anlieferungs-und-ladebereiche_675