Managing azure user access for a small company just opening an Azure account

Randell 0 Reputation points
2024-12-27T22:17:41.1+00:00

I am totally new to Azure. Zero experience. But I have experience with AWS and GCP. I need to get our Azure account setup so we can start trying some things out in there.

We use google gsuite for email and such.

We use terraform to manage the other cloud providers... and intend to do so for azure.

For AWS we use their SSO to give our developers the level of access they need for the different environments. For GCP it's of course tied to their gmail accounts.

So what is best practice for Azure? I would like some sort of SSO I think. But the structure in Azure seems to be different. I don't "think" I will have separate accounts like AWS that have separate user pools. Seems like I have would some hierarchy of management groups. Currently thinking a top level one for the project in general, then one per environment (dev/test/prod) under that and then a subscription under each of those. Seems like users are managed at the management group level, so SSO like AWS's might not be necessary. I might just need to create the users via terraform at the top level and configure them to authenticate with their google login or something. Then of course give them only the permissions they need to the project and environments below.

Searching for this kind of stuff commonly gets me information about handling access to an application that is hosted in azure. Which of course isn't what I am trying to do. I have turned up some info on Entra. But that looks more like okta, which is not what I am trying to do either.

Azure
Azure
A cloud computing platform and infrastructure for building, deploying and managing applications and services through a worldwide network of Microsoft-managed datacenters.
1,013 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Vahid Ghafarpour 22,290 Reputation points
    2024-12-27T23:19:45.59+00:00

    You can integrate your Microsoft Entra to GCP too

    https://zcusa.951200.xyz/en-us/entra/identity/saas-apps/google-apps-tutorial

    In total this guide can help you for first steps to setup

    https://zcusa.951200.xyz/en-us/azure/cloud-adoption-framework/ready/azure-setup-guide/

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.