Skip to main content
TrustRadius
Microsoft Entra ID

Microsoft Entra ID
Formerly Microsoft Azure Active Directory

Overview

What is Microsoft Entra ID?

Microsoft Entra ID (formerly Microsoft Azure Active Directory or Azure AD) is a cloud-based identity and access management (IAM) solution supporting restricted access to applications with Azure Multi-Factor Authentication (MFA) built-in, single sign-on (SSO), B2B collaboration controls, self-service password, and…

Read more
Recent Reviews
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Popular Features

View all 7 features
  • Multi-Factor Authentication (86)
    9.2
    92%
  • ID Management Single-Sign On (SSO) (86)
    9.0
    90%
  • ID-Management Access Control (85)
    8.8
    88%
  • Password Management (82)
    8.2
    82%

Reviewer Pros & Cons

View all pros & cons
Return to navigation

Pricing

View all pricing

Premium P1

$6.00

Cloud
per user/per month

Premium P2

$9.00

Cloud
per user/per month

Entry-level set up fee?

  • No setup fee
For the latest information on pricing, visithttps://www.microsoft.com/en…

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services
Return to navigation

Product Demos

AD FS to Microsoft Entra | How to migrate cloud apps

YouTube

Microsoft Entra ID Beginner's Tutorial (Azure Active Directory)

YouTube

Introducing Microsoft Entra

YouTube
Return to navigation

Features

Identity Management

Identity management software manages information about the identity of software users and controls access to corporate resources

8.6
Avg 8.1
Return to navigation

Product Details

What is Microsoft Entra ID?

Microsoft Entra ID (formerly Microsoft Azure Active Directory or Azure AD) is a cloud-based identity and access management (IAM) solution supporting restricted access to applications with Azure Multi-Factor Authentication (MFA) built-in, single sign-on (SSO), B2B collaboration controls, self-service password, and integration with Microsoft productivity and cloud storage (Office 365, OneDrive, etc) as well as 3rd party services.

Microsoft Entra ID safeguards organizations with a cloud identity and access management solution that connects employees, customers, and partners to their apps, devices, and data. Features include:

  • Secure adaptive access: Protects access to resources and data using strong authentication and risk-based adaptive access policies without compromising user experience.
  • Seamless user experiences: Provides an easy sign-in experience across a multicloud environment to keep users productive, reduce time managing passwords, and increase productivity.
  • Unified identity management: Manages identities and access to all applications in a central location, whether they’re in the cloud or on-premises, to improve visibility and control.


What is Microsoft Entra ID?
What is Conditional Access in Microsoft Entra ID?
What is Microsoft Entra ID Protection?


Microsoft Entra ID Features

Identity Management Features

  • Supported: ID-Management Access Control
  • Supported: ID Management Single-Sign On (SSO)
  • Supported: Multi-Factor Authentication
  • Supported: Password Management
  • Supported: Account Provisioning and De-provisioning
  • Supported: ID Management Workflow Automation
  • Supported: ID Risk Management

Microsoft Entra ID Video

Authentication fundamentals: The basics | Azure Active Directory

Microsoft Entra ID Competitors

Microsoft Entra ID Technical Details

Deployment TypesSoftware as a Service (SaaS), Cloud, or Web-Based
Operating SystemsUnspecified
Mobile ApplicationNo

Frequently Asked Questions

Microsoft Entra ID (formerly Microsoft Azure Active Directory or Azure AD) is a cloud-based identity and access management (IAM) solution supporting restricted access to applications with Azure Multi-Factor Authentication (MFA) built-in, single sign-on (SSO), B2B collaboration controls, self-service password, and integration with Microsoft productivity and cloud storage (Office 365, OneDrive, etc) as well as 3rd party services.

JumpCloud are common alternatives for Microsoft Entra ID.

Reviewers rate Multi-Factor Authentication highest, with a score of 9.2.

The most common users of Microsoft Entra ID are from Mid-sized Companies (51-1,000 employees).
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(391)

Attribute Ratings

Reviews

(1-25 of 98)
Companies can't remove reviews or game the system. Here's why
Score 7 out of 10
Vetted Review
Verified User
Incentivized
We use Microsoft Entra ID, previously known as Azure AD, as a bridge between local and cloud AD and for unified user management and single sign-on access to our cloud-based resources, such as Microsoft 365 and Azure, with the added benefit of multi-factor authentication (MFA).
  • Single Sign-On.
  • Multi factor Authentication (MFA).
  • Microsoft 365 User Management.
  • Depth of the administration menus often makes things hard to find.
  • Some basic, security-centric features are only available with paid per-user subscriptions -- such as restricting logins based on country.
  • Reporting and alerting is limited.
The use of Microsoft Entra ID, previously known as Azure AD, is necessary when using Microsoft 365. It can also be used for single sign-on, to link local AD to the cloud, and for implementing multifactor authentication (MFA). Using Entra ID to enforce MFA with Microsoft 365 is simple and should be considered if your organization is not already using it.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
Microsoft Entra ID (formerly Azure) is a great product that we utilize for deploying VMs, integrating SSO within applications, managing users, groups, and inboxes, and more. While the online software is not always intuitive for administrators to use (the UI changes frequently) and the name change caused a great amount of confusion, the product is solid, mature, and most of all does the job in all the categories mentioned above.
  • User and group management
  • VM management and deployment
  • SSO integration app store
  • Intune and MDM
  • UI development
  • Communication regarding name change
Microsoft Entra ID is well suited for most organizations who want a cloud based AD solution that allows administrators to manage users, spin up VMs, and integrate their internal applications with SSO. The software may not be well suited for businesses that use other softwares to do any of the tasks mentioned above, as they may not get their full money's worth.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
I help administer the identity use cases for Microsoft Entra ID. We use it as our primary identity in a hybrid configuration with our on-prem Active Directory. This also provides the base for our Office 365 products.
  • Foundation for O365.
  • Mechanism for modern authentication (SSO, SAML, OAuth, OIDC).
  • Feature-rich with controls like Conditional Access to enforce MFA and other access restrictions to company applications.
  • I would like to see more low-code automation options.
  • Default options need to be set more restrictive to prevent accidentally relaxed security settings.
  • I would like to see more streamlined configuration pages. Many similar or related settings are scattered across different pages.
If you are using Active Directory as your primary identity and want a way to enhance it for modern or cloud identity scenarios then this is a great product to interface to that. Also if you are interested in Office 365 products it becomes the most obvious choice since it is very integrated. If you are not interested in O365, then paying for the additional licensing to get all of the Entra ID features may not make as much sense for you.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
Microsoft Azure Active Directory is the key component of our identity, authentication, and authorization strategy. It is fully integrated with our HR platform for onboarding and separation and enables Single-sign-on, muti-factor-authentication, and a host of other basic and advanced identity-related services. Using all that Microsoft has to offer in this space simplifies our environment and makes additional third-party products specifically targeting identity management unnecessary.
  • Basic user management with full metadata
  • Single Sign On
  • Multi factor authentication
  • Some of the most desirable advanced features are seemingly only available in bundles
  • licensing is confusing
  • The speed of evolution has made this a good suite of services, but it is exhausting to keep up with the rate of change.
Any organization with a Windows or Office footprint should at least consider Microsoft Azure Active Directory as the source of truth for user information, and the key component of their identity strategy. For organizations less reliant on Microsoft there may be better alternatives.
June 07, 2024

Entra ID review

Score 3 out of 10
Vetted Review
Verified User
Incentivized
We use Microsoft Entra for Hybrid cloud functionality. Our local domain syncs with Microsoft services for email and applications
  • Syncing accounts
  • Provisioning account
  • Providing a hybrid envionment
  • The interface could be better.
  • Reporting is not very reliable and leaves off important information
  • Consistency is lacking as Microsoft has changed Azure and Entra multiple times.
It functions for hybrid environments in syncing to Microsoft 365 for email, onedrive, etc but we have a good amount of issues since they have moved over from Azure and it seems different components are constantly changing and require a fair amount of work to keep everything up to date.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We use Microsoft Entra ID to manage our user credentials and privileges across the MS 365 platform. As a small company, it's important to have IT systems that are easy to implement, manage, and grow. And they need to be reliable and play nice with the rest of our environment. Since we use Microsoft products across the board, Microsoft Entra ID is the obvious solution.
  • SSO across all Microsoft platforms
  • Easy to manage users and privileges
  • Easy to implement MFA options
  • Support has been less responsive than we'd like. Sometimes, responses/callbacks can take days.
  • There seem to be some credential conflicts with users who had "personal" accounts in the past using the same email address.
  • Would like more options for chat-based troubleshooting, rather than phone or email.
Based on my experience using Microsoft Entra ID in a small business, I'd definitely recommend it for other small organizations. But I can see that it offers more features than we're currently able to take advantage of. It's obviously more tailored to large organizations, but I appreciate that it's simple to manage with a small, resource-limited team.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We use it for authentication and authorization with in our organization. We also use it for SSO. We manage user objects, computer objects, Groups, Printers etc via Microsoft Entra ID. Via Microsoft Entra ID we centrally manage all the auth policies and make sure users have limited access to resources based on their role, neither more nor less. We also manage Microsoft Entra ID integrated DNS for proper name resolution.
  • Reliable: We can rely on the authentication process and protocols it uses.
  • Fault-tolerant: Because of multiple DCs,,, its fault-tolerant so easy life for us engineers
  • Easy to manage: UI is easy to understand
  • It should have an in-built password generation tool that generates passwords based on set AD password policies, and we can use that to reset user passwords.
  • There should be a one-click feature to check the resultant GPOs being applied to any machine or user.
If you have more than say 10 machines to manage and 20+ users who login to these machines everyday, its tough to manage these users and servers individually so rather use Microsoft Entra ID to authenticate users and allow them access to resources or computers with restricted policies. So overall its very helpful in managing Organizational resources as the organization size increases.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We currently use Microsoft Entra ID (Azure Active Directory) for several of our companies, some are hybrid and some are Entra only. Entra provides us with a trusted and proven directory solution that works well with our other suites (such as M365) since they are all Microsoft products. With Entra, we have the flexibility to support our existing configurations (on-prem AD) while also providing support for our newest configurations (Cloud-only).
  • Microsoft Entra integrates and functions very well with other applications/tools since it was developed by Microsoft.
  • Entra provides us the abilities to implement conditional access policies to require additional verifications (or lack thereof if needed) before granting access to a resource.
  • The ability to implement passwordless logins via Windows Hello or Authenticator sign-ins is extremely useful as companies transition to Zero Trust
  • Sometimes navigation in Entra ID can be challenging because (due to all the features) options are often buried deep in the site. This can slow up technicians until they get familiar with exactly what section they need to navigate to in order to perform a specific function/task.
  • To further expand on the above statement, Microsoft has a history of moving and/or renaming functions and products so it can be a challenge to find features at times.
  • Due to the sheer amount of features that Entra ID offers, it has a very steep learning curve to fully understand everything it can do....and how to use/configure each function.
If you are working with any Windows-based hardware, Microsoft Entra ID is almost a must-have for the management of your end users. It provides a well-organized and powerful directory and access control solution. Unless you have an extremely small organization with fewer than 10-15 users, Entra ID is a no-brainer when it comes to managing user accounts and access. It is one of the most widely used platforms and builds on years (decades) of lessons learned on what works and what doesn't.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We use Microsoft Entra ID to manage Users, groups and resources in our organisation. We have been using Azure AD for a longer time and now because of the name change its Microsoft Entra ID. The Microsoft Entra ID is a great way to manage all your resources in a particular tenant. This is easily accessible from any device using 2 FA
  • Managing Users
  • Managing groups
  • Setting up multi factor Authentication
  • Setting up B2B cross tenant
  • None
Microsoft Entra ID is very useful when you have to manage a huge resources consisting of Users, groups etc Microsoft Entra ID is useful in setting up cross tenant collaboration with other tenants. Using Microsoft Entra ID managing Users is easier thn before as the Entra ID can be linked with ILM as well for User management
Score 8 out of 10
Vetted Review
Verified User
Incentivized
We use Microsoft Entra ID to provide authentication & authorization to our end users for all cloud solutions that are used within the company. It provides easy single sign-on capabilities to a lot of enterprise applications.
  • Authentication & Authorization
  • Integration with cloud solutions
  • Useful security standards around password complexity, etc...
  • Fairly expensive
  • Limited reporting
Microsoft Entra ID provides easy management for users & groups in the cloud. We still use local Active Directory and are slowly integrating more and more with the cloud.
Currently we mainly integrate cloud solutions/applications with Microsoft Entra ID, while keeping our locally developped apps integrated with on-prem solutions.
Ron van Elteren | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Our organization uses Azure AD for verification across all platforms. But not only that, I also implement ERP software based on Microsoft Dynamics 365 Business Central and integrate it with Azure AD for customers. The Azure administrator of the customers create an app registration, which I then use in Business Central for integration. That way the users of our customers can use their Office 365 credentials to access Business Central. For the app registration to work well, I have to work with the customers system administrator. The app registration has to be set up thoroughly for it to work well with Business Central.
  • The integration with other Microsoft products
  • Multi-factor authentication
  • Conditional access
  • Simplify complexity - Azure AD is rich of features, but that also makes it very complex
  • Management
Microsoft's Azure Active Directory works flawless with other Microsoft products, which of course is logical. Because I work the most with Microsoft's 365 Business Central, I really like the way BC integrates with Azure AD for verification of the BC users. For users it is also convenient, as they only have to remember 1 set of credentials.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We currently use Microsoft Entra ID in a hybrid mode with on premise Active Directory. We are beginning to use Microsoft Entra ID more and more, utilising SSO, Conditional Access, MFA, Intune and other features.
  • We find that the MFA feature, combined with the Microsoft Authenticator app, works really well
  • Leveraging SSO to control access to a growing array of apps
  • Just getting started with Intune but it looks very promising
  • Inability to nest groups
  • Conditional Access could do with more granularity
Using a local Active Directory for years, we have accumulated a lot of groups and nesting of those groups is inevitable. This doesn't translate well into Entra ID's flat structure.
Score 8 out of 10
Vetted Review
ResellerIncentivized
Microsoft Entra ID, formerly known as Azure AD, is one of the best cloud tools available on the mark to this date. It is the heart of most (small/mid sized) companies.
  • Management
  • Scalability
  • Pricing
  • More functionality on the free version
  • Extra MFA functionality on the free version
  • Pricing
It is well suited for all type of companies that want to manage users and their devices on the cloud. Easy for the administrators to manage all the users and all the devices and easy to block when one of the devices gets comprimised.
June 04, 2024

Microsoft Entra ID

Score 10 out of 10
Vetted Review
Verified User
Incentivized
we used microsoft entra ID for our healthcare company. used for our hybrid environment of Office365 (Azure AD and on prem AD). this is currently addressing our MFA and moving to the autheicator method. this also give us the ability of risky logs to see if anyone's account are trying to be attacked
  • Syncing
  • SSO
  • MFA
  • SSO
it is well suite because it helps with security. The SSO and MFA are by far the best 2 features in AAD today. moving to the windows authenticator method will be a easier option moving forward since sim swapping has occurred recently. we are also moving all devices to windows intune
Score 9 out of 10
Vetted Review
Verified User
Incentivized
Key things we use Microsoft Entra ID is to centralise and simplify our user experience and making there lives easier so they can focus on the roles. By using features like Single Sign On and Muli-Factor Authentication it increases the security by making it harder for individuals of accessing our users accounts. Entra ID also helps make us compliant with IT industry standards and it is slowly progressing into a great product. With the use case of Entra ID and Intune it helps us create a zero touch environment.
  • User management
  • Intune
  • SSO
  • Users & Groups
  • License management
  • For new busniness's would be nice to have a pre-configured environment which you can select your needs and Entra ID will configure a majorty of the settings for you.
  • Stream line configuration less going to 5 different locations just to setup a single thing.
  • Documentation for Intra and other products be done as guides for specific use cases.
The ease of use when off-boarding employees from the business being able to easily remove access, licenses, software and groups.

Problems when offboarding people when you access the user account when removing user from a mail group you are unable to do that from Microsoft Entra, it would be more appropriate in the future to be able to do this instead of having to go into the Exchange system to remove these groups.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We use Microsoft Entra ID with a hybrid AD and Exchange for our office 365 setup, we use AD sync to synchronize our users with Entra ID. We use Entra ID to manage applications access to send email and other functions with the graph API and we also use Entra ID to check users that are possibly compromised and manage MFA within the same interface.
  • Manage users from one interface.
  • Easy to check user activity in case of an audit.
  • Adding permissions to an application so it can send emails for example using graph API
  • A lot of good features are paywalled behind expensive monthly subscriptions.
  • Would be nice to have an option even if paid to conserve more than 7 days of user activity logs.
  • Having the option to add some paid features without buying a bundle.
Microsoft Entra ID is a must in any office 365 environment, but it is also useful to integrate into other applications so you can offer a single SSO service to your users without any additional products. It scales well so it can easily be implemented in a business with 5 users or 1000. The features that are included are great even without paying an additional subscription, but there are a few features from a P1 subscription that add a lot of important features that will help keep users safer from attacks.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We have migrated all of our systems to Entra ID for SSO. It provides a single point of sign-on for users while also providing multifactor authentication for security. Users are now able to reset their own passwords(previously, they would have to call the help desk), and we have better insight into where users are signing in from and also which accounts are being attacked by unknown third parties.
  • Single Sign On.
  • Security (Multifactor authentication).
  • User management.
  • The Entra ID interface has numerous options. It is sometimes easy to get lost looking for something.
  • The recent name change from Azure has confused some of our users, thinking they were logging into the wrong portal. This generated numerous calls to our help desk.
  • MS will change the locations of things inside their interface at will. Sometimes, they notify you beforehand, and others do not.
Entra ID is well-suited for medium to large environments that are already users of Microsoft products. From that aspect, it's fairly simple to get set up and start using. I feel it's less useful to smaller businesses or businesses that are not already using MS products. Entra seems like it would be overkill for a small company of 20-30 users or those that don't have the budget for Entra. SSO can be done for cheaper via other identity management softwares.
Rohan Kumar Panda | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We are using Entra ID in sync with the On-Premises Active Directory. We are using it to manage internal as well as external users from trusted domains. We also use this to manage Application Authentication using App registrations, Application SSO management using Enterprise Applications and Application access configuration using Entra ID Groups. We also use features like Conditional Access policies, Named locations etc
  • Application SSO management
  • Application Auth using App registrations
  • Conditional Access policies
  • External user management
  • Sometimes Azure just breaks and doesn't show proper details
  • The sync process from on-premises can be improved
  • it uses User Principal name rather than Email to authenticate
It is very good for managing applications, especially SSO and auth parts. The RBAC can be improved
Score 8 out of 10
Vetted Review
Verified User
Incentivized
We used Microsoft Entra ID for the authentication and authorization of Web Applications for users that are using from outside company premise and we also implemented conditional access and different policies to restrict access to certain resources and types of devices, locations, and other variables like device compliance, antivirus updates, windows patches requirement for the user to access the applications.
  • Authentication
  • Authorization
  • Conditional Access.
  • SSO
  • External Identities.
  • Consolidated Portal rather than different portals for everything.
It well suited for scenarios where you have users accessing applications from outside of the organizational premise for example we have field force representatives that visit different locations take orders and update data on their mobiles and tablets. so, it's very easy for them to simply open the app and input required data and its automatically sync with published web application and we are managing the authentication and authorization through Entra ID and conditional access through intunes conditional access policies.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Basically it's allowed us to digitize our identity so we can manage all our endpoints, machines or users and devices so we can protect the business.
  • Additional access is very good for managing policy, so it's very good for that. Also the governance and obviously new features such as SSE coming out so we can start to use not only our own business for our customers.
  • Not a lot, but the fact is it moves so quickly so there's always catching up and always providing new stuff.
We full run customers want to use more modern type of governance and compliance, but also using things such as computer access allows them to manage the risk for users, devices and applications, which is where we see massively important. The cons is it moves so quickly, so manage it for customers is sometimes a bit of a challenge.
May 17, 2024

Microsoft Entra ID

Score 9 out of 10
Vetted Review
Verified User
Incentivized
Well, for security, it helps us manage the accounts and for things like conditional access, everything is managed through Entra ID and everything from putting them in groups for policy to password resets.
  • It's pretty straightforward. I like the organization. Yeah, it's easy to use.
  • Well, this is kind of like in general, but I wish Microsoft would be better about disclosing what changes they're going to make to all of the services, to be honest. There'll be times where even when they change the GUI around, we don't know where to look for stuff that was in a previous area. But other than that, I mean it's pretty similar to Active directory, so I mean it's a smooth transition from that. So I don't really how much complaints, to be honest.
We're on Microsoft House, so we like the integration with all of the other services. For instance, defender, like conditional access for instance, having certain users or certain groups have access to certain things and it's all ties in kind of seamlessly, so that's pretty good.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
I use it for creating users. We also use it for application management so that users can have access to certain applications that we have or if we need to link them to our client VPN, to give them access to that.
  • It lets me see my users in my environment. It lets me change passwords or see what kind of activity has been done on their account.
  • Most of the time I see is just subtle changes within the environment, this has moved to this place over here, or this feature has moved over here and I'm just like, I'm used to port to being in one place.
It's well suited for managing users. That's what I like the most. It ties in with our active directory environment, so I can go back and forth because we're hybrid. I don't see any need for much improvement. I mean, Microsoft has really taken over everything that needs to be done with the user, how to manage them and everything like that, so I like that about Microsoft.
May 17, 2024

Entra ID Review

Score 8 out of 10
Vetted Review
Verified User
Incentivized
Our company is an identity governance company and so it integrates with Entra ID to provide the identity governance solutions to our customers so that they can basically have good discoverability as well as request review system for the permissions associated to their Azure products via Entra ID. And because of that we consult on how other companies will use Entra ID.
  • I'd say its group management system is pretty good. It does nesting of groups, which is not super common anywhere else, and that gives user identities the option to have a chaining system where you can be in multiple different groups since they get permissions from another group. So this nesting of groups helps in organization of people and their groups that they have.
  • I would say the service account integration because service accounts are a confusing term within Entra ID, they have service principles as well as applications. There is not fantastic documentation on how applications and service principles are interrelated to each other. The UI is not very intuitive, so it can get confusing for users to differentiate between what is one and what is the other. And because the terms are used interchangeably in some places, but in other places like the APIs they aren't, it can cause a lot of confusion for someone who's picking it up.
No, I don't have any specific scenarios in mind, but basically if you're using Azure, Entra ID is your most suitable answer to using any of the other Azure products because that's the one which kind of helps in your identity governance.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
The biggest, obviously, is security. So the product allows the company as a whole to access different information, different materials, and all of the Microsoft programs, but in a safe, secure way.
  • Just making sure that the person who's logging into our backend or capturing an information is exactly who they are supposed to be, and so it keeps our information private and confidential and at the same time, only accessible to our employees.
  • I think I don't really have anything. It works fairly easy. It's very easy to use, so I wouldn't recommend anything.
I think when a company is really large, has a ton of employees, it has a lot of content that they need to keep secure, then this is a tool that is great in order to keep the company able to access what they need, but also at the same time make sure that it has a hard security.
Return to navigation