|
1 | 1 | ---
|
2 |
| -title: Secure hybrid access |
3 |
| -description: This article describes partner solutions for integrating your legacy on-premises, public cloud, or private cloud applications with Azure AD. |
| 2 | +title: Secure hybrid access, protect legacy apps with Azure Active Directory |
| 3 | +description: Find partner solutions to integrate your legacy on-premises, public cloud, or private cloud applications with Azure AD. |
4 | 4 | services: active-directory
|
5 | 5 | author: gargi-sinha
|
6 | 6 | manager: martinco
|
7 | 7 | ms.service: active-directory
|
8 | 8 | ms.subservice: app-mgmt
|
9 | 9 | ms.topic: how-to
|
10 | 10 | ms.workload: identity
|
11 |
| -ms.date: 8/17/2021 |
| 11 | +ms.date: 01/17/2023 |
12 | 12 | ms.author: gasinh
|
13 | 13 | ms.collection: M365-identity-device-management
|
14 | 14 | ---
|
15 |
| -# Secure hybrid access: Secure legacy apps with Azure Active Directory |
| 15 | +# Secure hybrid access: Protect legacy apps with Azure Active Directory |
16 | 16 |
|
17 |
| -You can now protect your on-premises and cloud legacy authentication applications by connecting them to Azure Active Directory (AD) with: |
| 17 | +In this article, learn to protect your on-premises and cloud legacy authentication applications by connecting them to Azure Active Directory (Azure AD). |
18 | 18 |
|
19 |
| -- [Azure AD Application Proxy](#secure-hybrid-access-through-azure-ad-application-proxy) |
| 19 | +* **Application Proxy**: |
| 20 | + * Protect users, apps, and data in the cloud and on-premises |
| 21 | + * Use it to publish on-premises web applications externally |
| 22 | + * [Remote access to on-premises applications through Azure AD Application Proxy](../app-proxy/application-proxy.md) |
| 23 | +* **Secure hybrid access through Azure AD partner integrations**: |
| 24 | + * Pre-built solutions |
| 25 | + * Conditional Access policies per application |
| 26 | + * [What is Conditional Access?](../conditional-access/overview.md) |
| 27 | + * Azure AD integration documentation |
20 | 28 |
|
21 |
| -- [Secure hybrid access: Secure legacy apps with Azure Active Directory](#secure-hybrid-access-secure-legacy-apps-with-azure-active-directory) |
22 |
| - - [Secure hybrid access through Azure AD Application Proxy](#secure-hybrid-access-through-azure-ad-application-proxy) |
23 |
| - - [Secure hybrid access through Azure AD partner integrations](#secure-hybrid-access-through-azure-ad-partner-integrations) |
| 29 | +In addition to Application Proxy, you can strengthen your security posture with Identity Protection. |
24 | 30 |
|
25 |
| -You can bridge the gap and strengthen your security posture across all applications with Azure AD capabilities like [Azure AD Conditional Access](../conditional-access/overview.md) and [Azure AD Identity Protection](../identity-protection/overview-identity-protection.md). By having Azure AD as an Identity provider (IDP), you can use modern authentication and authorization methods like [single sign-on (SSO)](what-is-single-sign-on.md) and [multifactor authentication (MFA)](../authentication/concept-mfa-howitworks.md) to secure your on-premises legacy applications. |
| 31 | +Learn more: |
26 | 32 |
|
27 |
| -## Secure hybrid access through Azure AD Application Proxy |
| 33 | +* [What is Identity Protection?](../identity-protection/overview-identity-protection.md) |
| 34 | +* [Using Azure AD Application Proxy to publish on-premises apps for remote users](../app-proxy/what-is-application-proxy.md) |
28 | 35 |
|
29 |
| -Using [Application Proxy](../app-proxy/what-is-application-proxy.md) you can provide [secure remote access](../app-proxy/application-proxy-add-on-premises-application.md) to your on-premises web applications. Your users don’t need to use a VPN. Users benefit by easily connecting to their applications from any device after a [SSO](../app-proxy/application-proxy-config-sso-how-to.md#how-to-configure-single-sign-on). Application Proxy provides remote access as a service and allows you to [easily publish your applications](../app-proxy/application-proxy-add-on-premises-application.md) to users outside the corporate network. It helps you scale your cloud access management without requiring you to modify your on-premises applications. [Plan an Azure AD Application Proxy](../app-proxy/application-proxy-deployment-plan.md) deployment as a next step. |
| 36 | +## Single sign-on and multi-factor authentication |
30 | 37 |
|
31 |
| -## Secure hybrid access through Azure AD partner integrations |
| 38 | +With Azure AD as an identity provider (IdP), you can use modern authentication and authorization methods like single sign-on (SSO) and Azure AD Multi-Factor Authentication (MFA) to secure legacy, on-premises applications. |
32 | 39 |
|
33 |
| -In addition to [Azure AD Application Proxy](../app-proxy/what-is-application-proxy.md), Microsoft partners with third-party providers to enable secure access to your on-premises applications and applications that use legacy authentication. |
| 40 | +Learn more: |
34 | 41 |
|
35 |
| - |
| 42 | +* [What is SSO in Azure Active Directory?](what-is-single-sign-on.md) |
| 43 | +* [How it works: Azure AD Multi-Factor Authentication](../authentication/concept-mfa-howitworks.md) |
36 | 44 |
|
37 |
| -The following partners offer pre-built solutions to support **conditional access policies per application** and provide detailed guidance for integrating with Azure AD. |
| 45 | +## Secure hybrid access with Application Proxy |
38 | 46 |
|
39 |
| -- [Akamai Enterprise Application Access](../saas-apps/akamai-tutorial.md) |
| 47 | +Use Application Proxy to protect users, apps, and data in the cloud, and on premises. Use this tool for secure remote access to on-premises web applications. Users don’t need to use a virtual private network (VPN); they connect to applications from devices with SSO. |
40 | 48 |
|
41 |
| -- [Citrix Application Delivery Controller (ADC)](../saas-apps/citrix-netscaler-tutorial.md) |
| 49 | +Learn more: |
42 | 50 |
|
43 |
| -- [Datawiza Access Broker](../manage-apps/datawiza-with-azure-ad.md) |
| 51 | +* [Remote access to on-premises applications through Azure AD Application Proxy](../app-proxy/application-proxy.md) |
| 52 | +* [Tutorial: Add an on-premises application for remote access through Application Proxy in Azure AD](../app-proxy/application-proxy-add-on-premises-application.md) |
| 53 | +* [How to configure SSO to an Application Proxy application](../app-proxy/application-proxy-config-sso-how-to.md) |
| 54 | +* [Using Azure AD Application Proxy to publish on-premises apps for remote users](../app-proxy/what-is-application-proxy.md) |
44 | 55 |
|
45 |
| -- [F5 BIG-IP APM (ADC)](../manage-apps/f5-aad-integration.md) |
| 56 | +### Application publishing and access management |
46 | 57 |
|
47 |
| -- [F5 BIG-IP APM VPN](../manage-apps/f5-aad-password-less-vpn.md) |
| 58 | +Use Application Proxy remote access as a service to publish applications to users outside the corporate network. Help improve your cloud access management without requiring modification to your on-premises applications. |
48 | 59 |
|
49 |
| -- [Kemp](../saas-apps/kemp-tutorial.md) |
| 60 | +Learn more: |
50 | 61 |
|
51 |
| -- [Perimeter 81](../saas-apps/perimeter-81-tutorial.md) |
| 62 | +* [Tutorial: Add an on-premises application for remote access through Application Proxy in Azure AD](../app-proxy/application-proxy-add-on-premises-application.md) |
| 63 | +* [Plan an Azure AD Application Proxy deployment](../app-proxy/application-proxy-deployment-plan.md) |
52 | 64 |
|
53 |
| -- [Silverfort Authentication Platform](../manage-apps/silverfort-azure-ad-integration.md) |
| 65 | +## Partner integrations for apps: on-premises and legacy authentication |
54 | 66 |
|
55 |
| -- [Strata](../saas-apps/maverics-identity-orchestrator-saml-connector-tutorial.md) |
| 67 | +Microsoft partners with various companies that deliver pre-built solutions for on-premises applications, and applications that use legacy authentication. The following diagram illustrates a user flow from sign-in to secure access to apps and data. |
56 | 68 |
|
57 |
| -The following partners offer pre-built solutions and detailed guidance for integrating with Azure AD. |
| 69 | +  |
58 | 70 |
|
59 |
| -- [AWS](../saas-apps/aws-clientvpn-tutorial.md) |
| 71 | +### Secure hybrid access through Azure AD partner integrations |
60 | 72 |
|
61 |
| -- [Check Point](../saas-apps/check-point-remote-access-vpn-tutorial.md) |
| 73 | +The following partners offer solutions to support Conditional Access policies per application. Use the tables in the following two sections to learn about the partners and Azure AD integration documentation. |
62 | 74 |
|
63 |
| -- [Cisco AnyConnect](../saas-apps/cisco-anyconnect.md) |
| 75 | +Learn more: [What is Conditional Access?](../conditional-access/overview.md) |
64 | 76 |
|
65 |
| -- [Cloudflare](../manage-apps/cloudflare-azure-ad-integration.md) |
| 77 | +|Partner company site|Integration documentation| |
| 78 | +|---|---| |
| 79 | +|[Akamai Technologies](https://www.akamai.com/)|[Tutorial: Azure AD SSO integration with Akamai](../saas-apps/akamai-tutorial.md)| |
| 80 | +|[Citrix Systems, Inc.](https://www.citrix.com/)|[Tutorial: Azure AD SSO integration with Citrix ADC SAML Connector for Azure AD (Kerberos-based authentication)](../saas-apps/citrix-netscaler-tutorial.md)| |
| 81 | +|[Datawiza](https://www.datawiza.com/)|[Tutorial: Configure Secure Hybrid Access with Azure AD and Datawiza](datawiza-with-azure-ad.md)| |
| 82 | +|[F5, Inc.](https://www.f5.com/)|[Integrate F5 BIG-IP with Azure AD](f5-aad-integration.md)</br>[Tutorial: Configure F5 BIG-IP SSL-VPN for Azure AD SSO](f5-aad-password-less-vpn.md)| |
| 83 | +|[Progress Software Corporation, Progress Kemp](https://support.kemptechnologies.com/hc)|[Tutorial: Azure AD SSO integration with Kemp LoadMaster Azure AD integration](../saas-apps/kemp-tutorial.md)| |
| 84 | +|[Perimeter 81 Ltd.]()|[Tutorial: Azure AD SSO integration with Perimeter 81](../saas-apps/perimeter-81-tutorial.md)| |
| 85 | +|[Silverfort](https://www.silverfort.com/)|[Tutorial: Configure Secure Hybrid Access with Azure AD and Silverfort](silverfort-azure-ad-integration.md)| |
| 86 | +|[Strata Identity, Inc.](https://www.strata.io/)|[Integrate Azure AD SSO with Maverics Identity Orchestrator SAML Connector](../saas-apps/maverics-identity-orchestrator-saml-connector-tutorial.md)| |
66 | 87 |
|
67 |
| -- [Fortinet](../saas-apps/fortigate-ssl-vpn-tutorial.md) |
| 88 | +### Partners with pre-built solutions and integration documentation |
68 | 89 |
|
69 |
| -- [Palo Alto Networks Global Protect](../saas-apps/paloaltoadmin-tutorial.md) |
| 90 | +|Partner company site|Integration documentation| |
| 91 | +|---|---| |
| 92 | +|[Amazon Web Service, Inc.](https://aws.amazon.com/)|[Tutorial: Azure AD SSO integration with AWS ClientVPN](../saas-apps/aws-clientvpn-tutorial.md)| |
| 93 | +|[Check Point Software Technologies Ltd.](https://www.checkpoint.com/)|[Tutorial: Azure AD single SSO integration with Check Point Remote Secure Access VPN](../saas-apps/check-point-remote-access-vpn-tutorial.md)| |
| 94 | +|[Cisco Systems, Inc.](https://www.cisco.com/)|[Tutorial: Azure AD SSO integration with Cisco AnyConnect](../saas-apps/cisco-anyconnect.md)| |
| 95 | +|[Cloudflare, Inc.](https://www.cloudflare.com/)|[Tutorial: Configure Cloudflare with Azure AD for secure hybrid access](cloudflare-azure-ad-integration.md)| |
| 96 | +|[Fortinet, Inc.](https://www.fortinet.com/)|[Tutorial: Azure AD SSO integration with FortiGate SSL VPN](../saas-apps/fortigate-ssl-vpn-tutorial.md)| |
| 97 | +|[Palo Alto Networks](https://www.paloaltonetworks.com/)|[Tutorial: Azure AD SSO integration with Palo Alto Networks Admin UI](../saas-apps/paloaltoadmin-tutorial.md)| |
| 98 | +|[Pulse Secure, Acquired by Ivanti](https://www.pulsesecure.net/)|[Tutorial: Azure AD SSO integration with Pulse Connect Secure (PCS)](../saas-apps/pulse-secure-pcs-tutorial.md)</br>[Tutorial: Azure AD SSO integration with Pulse Secure Virtual Traffic Manager](../saas-apps/pulse-secure-virtual-traffic-manager-tutorial.md)</br>**Note**: Pulse Secure is part of Ivanti. See, [Ivanti, Pulse Secure](https://www.ivanti.com/company/history/pulse-secure?psredirect)| |
70 | 99 |
|
71 |
| -- [Pulse Secure Pulse Connect Secure (PCS)](../saas-apps/pulse-secure-pcs-tutorial.md) |
| 100 | +|[Zsclaer, Inc.](https://www.zscaler.com/)|[Tutorial: Integrate Zscaler Private Access with Azure AD](../saas-apps/zscalerprivateaccess-tutorial.md)| |
72 | 101 |
|
73 |
| -- [Pulse Secure Virtual Traffic Manager (VTM)](../saas-apps/pulse-secure-virtual-traffic-manager-tutorial.md) |
74 |
| - |
75 |
| -- [Zscaler Private Access (ZPA)](../saas-apps/zscalerprivateaccess-tutorial.md) |
|
0 commit comments