Frequently asked questions - Microsoft Entra External ID (2024)

  • Article

This article answers frequently asked questions about Microsoft Entra External ID. This document offers guidance to help customers better understand Microsoft’s current external identities capabilities and the journey for our next generation platform (Microsoft Entra External ID).

This FAQ references customer identity and access management (CIAM). CIAM is an industry recognized category that covers solutions that manage identity, authentication, and authorization for external identity use cases (partners, customers, and citizens). Common functionality includes self-service capabilities, adaptive access, single sign-on (SSO), and bring your own identity (BYOI).

Frequently asked questions

What is Microsoft Entra External ID?

Microsoft Entra External ID is our next generation CIAM platform that represents an evolutionary step in unifying secure and engaging experiences across all external identities including customers, partners, citizens, and others, within a single, integrated platform.

Is Microsoft Entra External ID a new name for Azure AD B2C?

No, this isn't a new name for Azure AD B2C. Microsoft Entra External ID builds on the success of our existing Azure AD B2C technologies but represents our future for CIAM. The new platform serves as the foundation for rapid innovation, features, and capabilities that address use cases across all external users.

What is the release date for Microsoft Entra External ID?

Microsoft Entra External ID for external-facing apps entered preview at Microsoft Build 2023. The existing B2B collaboration feature remains unchanged.

What is the pricing for Microsoft Entra External ID?

Microsoft Entra External ID for external-facing apps is in preview, so no pricing details are available at this time. The pricing for existing B2B collaboration features is unchanged.

How does Microsoft Entra External ID affect B2B collaboration?

There are no changes to the existing B2B collaboration features or related pricing. Upon general availability, Microsoft Entra External ID will address use cases across all external user identities, including partners, customers, citizens, and others.

How long will you support the current Azure AD B2C platform?

We remain fully committed to support of the current Azure AD B2C product. The SLA remains unchanged, and we’ll continue investments in the product to ensure security, availability, and reliability. For existing Azure AD B2C customers that have an interest in moving to the next generation platform, more details will be made available after general availability.

I have many investments tied up in Azure AD B2C, both in code artifacts and CI/CD pipelines. Do I need to plan for a migration or some other effort?

We recognize the large investments in building and managing custom policies. We’ve listened to many customers who, like you, have shared that custom policies are too hard to build and manage. Our next generation platform will resolve the need for intricate custom policies. In addition to many other platform and feature improvements, you’ll have equivalent functionality in the new platform but a much easier way to build and manage it. We expect to share migration options closer to general availability of the next generation platform.

I’ve heard I can preview the Microsoft Entra External ID platform. Where can I learn more?

You can learn more about the preview and the features we're delivering on the new platform by visiting the Microsoft Entra External ID developer center.

As a new customer, which solution is a better fit, Azure AD B2C or Microsoft Entra External ID (preview)?

Opt for the current Azure AD B2C product if:

  • You have an immediate need to deploy a production ready build for customer-facing apps.

    Note

    Keep in mind that the next generation Microsoft Entra External ID platform represents the future of CIAM for Microsoft, and rapid innovation, new features and capabilities will be focused on this platform. By choosing the next generation platform from the start, you will receive the benefits of rapid innovation and a future-proof architecture.

Opt for the next generation Microsoft Entra External ID platform if:

  • You’re starting fresh building identities into apps or you're in the early stages of product discovery.
  • The benefits of rapid innovation, new features and capabilities are a priority.

Why is Azure AD B2C not part of Microsoft Entra External ID?

Microsoft Entra External ID and Azure AD B2C are two separate platforms powered by ESTS and IEF respectively. Microsoft Entra External ID is our new converged platform which is future proof and developer friendly to meet all your identity needs – B2E, B2B and B2C. At the same time, we will still continue to support Azure AD B2C as a separate product offering with no change in SLA, and we’ll continue investments in the product to ensure security, availability, and reliability.

Next steps

Learn more about Microsoft Entra External ID

Frequently asked questions - Microsoft Entra External ID (2024)

FAQs

What is the purpose of Microsoft Entra external ID in Microsoft Entra? ›

External ID allows you to further personalize and optimize end-user experiences by collecting and analyzing end-user data, improving their user journey while complying with privacy regulations.

Which protocol is used by Microsoft Entra ID for authorization? ›

Microsoft Entra ID supports many standardized protocols for authentication and authorization, such as SAML 2.0, OpenID Connect, OAuth 2.0, and WS-Federation. Microsoft Entra ID also supports password vaulting and automated sign-in capabilities for apps that only support forms-based authentication.

What is the difference between B2C and entra external id? ›

Microsoft Entra External ID is next stage evolution, which is designed to seamlessly unite secure and engaging experiences for a wide range of external identities, including customers, partners, citizens within a single, cohesive platform. whereas B2C is basically to build customer facing applications only.

How do I add an external user to my Microsoft tenant? ›

Sign in to the Microsoft Entra admin center as at least a User Administrator. Browse to Identity > Users > All users. Select Invite external user from the menu.

What is the entra external id for customers? ›

Microsoft Entra External ID is a customer identity access management (CIAM) solution that lets you create secure, customized sign-in experiences for your external-facing apps and services.

Which choice correctly describes Microsoft Entra ID? ›

Microsoft Entra ID is Microsoft's cloud-based identity and access management solution that connects people to their apps, devices, and data.

What are the benefits of having an Entra ID? ›

Benefits Of Azure Entra ID

Using Azure Entra ID access to applications on the cloud or on-premise can be simplified. Single Sign-On to access thousands of SaaS applications & On-premise applications. Multi-Factor Authentication, Conditional Access, Privileged Identity Management, and Dynamic Group.

Which two services are provided by Microsoft Entra? ›

Microsoft Entra is a suite of identity and access capabilities. Out of the options provided, the two services that are associated with Microsoft Entra include authentication and single sign-on (SSO). Authentication is a process that verifies the identity of a user or device.

Does Entra ID use Kerberos? ›

Microsoft Entra ID can issue Kerberos ticket-granting tickets (TGTs) for one or more of your Active Directory domains. With this functionality, users can sign in to Windows with modern credentials, such as FIDO2 security keys, and then access traditional Active Directory-based resources.

What is a benefit of using Microsoft Entra ID versus Active Directory? ›

Unlike Active Directory, which is based around domain controllers, Microsoft Entra ID is a managed service, meaning organizations do not have to deploy, configure or maintain domain controllers.

When was Microsoft Entra introduced? ›

Microsoft Entra is the identity and access product family we introduced in May 2022 to support our expanded vision for secure access.

What is the difference between Azure and Entra? ›

Azure AD, short for Azure Active Directory, is a cloud-based identity and access management solution. On the other hand, Microsoft Entra is a hybrid IAM solution that caters to organizations with complex identity management requirements.

What is Microsoft Entra verified ID? ›

This solution automates verification of identity credentials and claims. The verifier is an organization that requests proof and, upon receipt, verifies that the claims in the credentials satisfy requirements.

Why entra ID? ›

Entra ID offers many authentication methods, including password-based, multi-factor, smart card, and certificate-based authentication. It also includes several security features, such as Conditional Access policies, risk-based authentication, and identity protection.

Is Entra ID the same as Azure AD? ›

They're one and the same. Microsoft Entra ID is the new name for Azure AD.

What are external identities in Azure? ›

Azure Active Directory External Identities, part of Microsoft Entra, provides highly secure digital experiences for partners, customers, citizens, patients, or any users outside your organization with customization controls.

Top Articles
Latest Posts
Article information

Author: Dr. Pierre Goyette

Last Updated:

Views: 5920

Rating: 5 / 5 (50 voted)

Reviews: 89% of readers found this page helpful

Author information

Name: Dr. Pierre Goyette

Birthday: 1998-01-29

Address: Apt. 611 3357 Yong Plain, West Audra, IL 70053

Phone: +5819954278378

Job: Construction Director

Hobby: Embroidery, Creative writing, Shopping, Driving, Stand-up comedy, Coffee roasting, Scrapbooking

Introduction: My name is Dr. Pierre Goyette, I am a enchanting, powerful, jolly, rich, graceful, colorful, zany person who loves writing and wants to share my knowledge and understanding with you.