Summary and resources
Now that you have reviewed this module, you should be able to:
- Configure and manage Microsoft Entra roles.
- Configure and manage custom domains.
- Evaluate permissions based on role assignments and settings.
- Configure delegation by using administrative units.
- Configure tenant-wide settings.
Resources
Use these resources to discover more.
Information about which roles manage Azure resources and which roles manage Microsoft Entra resources is available at Classic subscription administrator roles, Azure roles, and Microsoft Entra roles.
For more information about roles, see Understand Azure role definitions.
For information about how to use PIM, see Privileged Identity Management.
The following step-by-step guides provide information on how you can use Conditional Access to configure equivalent policies to those policies enabled by security defaults:
- Require MFA for administrators
- Require MFA for Azure management
- Block legacy authentication
- Require MFA for all users
- Require MFA registration - Requires Microsoft Entra Identity Protection part of Microsoft Entra ID Premium P2.