Microsoft Entra ID and Microsoft Active Directory compete in the identity management category. Microsoft Entra ID has the upper hand in cloud integration, while Microsoft Active Directory excels in on-premise security.
Features: Microsoft Entra ID integrates seamlessly with cloud services, offers multi-factor authentication, and provides strong cloud-native capabilities. Microsoft Active Directory is known for comprehensive device management, advanced group policies, and robust on-premise security features.
Room for Improvement: Microsoft Entra ID needs better hybrid deployment capabilities, more detailed auditing tools, and stronger on-premise integrations. Microsoft Active Directory requires enhanced cloud integration, improved user activity logging, and more cloud-compatible features.
Ease of Deployment and Customer Service: Microsoft Entra ID is straightforward to deploy in cloud environments, with extensive documentation and prompt customer service. Microsoft Active Directory is more complex to deploy, especially in hybrid environments, but still offers solid customer support.
Pricing and ROI: Microsoft Entra ID offers competitive pricing with a quicker return on investment due to lower setup costs and faster deployment. Microsoft Active Directory involves higher initial setup costs but delivers long-term benefits with its extensive feature set.
The solution is really time-saving since I don't need to create users in each server or system manually, and user access control is streamlined.
We leverage existing licensing, like Windows Server or SQL, and hybrid benefits, and our sales and marketing teams benefit from co-selling and partnership advantages.
We get a return from not needing to pay other vendors to do what we already had from Microsoft, which was better than the competition.
By eliminating the need for multiple VPN channels and enabling direct work from Azure servers, we have achieved approximately 30% efficiency savings.
Support documents are available on the internet in every language.
Sometimes support takes long to engage and resolve, extending over weeks or even months.
The actual support when you get to that level is a ten out of ten.
There are immediate answers to any issues that arise with great knowledge and a deep understanding of the product and business needs.
They usually try to deflect, buy time, and often do not address the problem immediately.
Microsoft Active Directory scales effectively; I don't foresee any issues with that at all.
We experienced no scalability issues with Microsoft Entra ID.
Its scalability is impressive, aided by Microsoft's efforts to expand its data centers.
When dealing with tens of thousands of objects, it requires proper management and best practices to retrieve only necessary data.
With multiple domain controllers, stability is ensured.
I've been working with Microsoft Active Directory for over 3 years, and we've had no problems.
It's a critical solution that we can't do without.
The stability of the solution is very high at 99.999%.
We rarely had significant problems or crashes.
Exporting and verifying group memberships require command line scripts, which isn't simple.
There are some features that need improvements in terms of ease of use and frequency of updates.
Sometimes, it can be overly complicated, and when you apply Group Policy in an Active Directory environment, sometimes those settings apply and sometimes they don't.
A recent incident we dealt with took four months to resolve with a seven-day deadline, which was quite frustrating.
Synchronization issues occasionally occur, making it challenging to analyze logs and pinpoint the exact problem.
There is a need for better transformation support from on-premises Active Directory policies to the cloud, as Entra ID doesn't cover this sufficiently yet.
For the cloud solution in our region, the pricing of Microsoft Active Directory is very high.
I consider Microsoft Active Directory expensive because if you buy this thing bundled with the Windows Directory Server, you get five user licenses for about a thousand euros, or a little bit less than this.
The pricing, setup cost, and licensing with Microsoft Active Directory is straightforward; you just buy the server and then have to buy the user CALs.
We are getting our money's worth.
Microsoft sets pricing based on customer demand, adjusting to find the optimal balance between sales volume and profit per unit, similar to how Costco manages product prices.
Most features of Entra ID are part of Microsoft's ecosystem and included in Microsoft 365 bundles, which means there are no additional costs associated with pricing and licensing.
One valuable feature is the centralized creation of IDs.
I can control all the devices in my domain by just changing the group policies in one place.
Having active deployment and well-configured systems helps me manage tasks and easily oversee thousands of users.
We can secure the applications that we are building and make sure that if the application were to be compromised, there is no full access to a customer's environment causing issues and other security concerns.
It's integrated with Microsoft technologies like Authenticator, SSO, and MFA, streamlining operations and creating a seamless environment.
The granular control, such as preventing logins from specific locations, enhances security significantly.
Product | Market Share (%) |
---|---|
Microsoft Entra ID | 19.1% |
Microsoft Active Directory | 3.2% |
Other | 77.7% |
Company Size | Count |
---|---|
Small Business | 19 |
Midsize Enterprise | 6 |
Large Enterprise | 20 |
Company Size | Count |
---|---|
Small Business | 80 |
Midsize Enterprise | 36 |
Large Enterprise | 132 |
Active Directory stores information about objects on the network and makes this information easy for administrators and users to find and use. Active Directory uses a structured data store as the basis for a logical, hierarchical organization of directory information.
This data store, also known as the directory, contains information about Active Directory objects. These objects typically include shared resources such as servers, volumes, printers, and the network user and computer accounts.
Security is integrated with Active Directory through logon authentication and access control to objects in the directory. With a single network logon, administrators can manage directory data and organization throughout their network, and authorized network users can access resources anywhere on the network. Policy-based administration eases the management of even the most complex network.
Microsoft Entra ID is an advanced identity and access management service offering seamless single sign-on, multifactor authentication, and centralized user access across applications, enhancing security and efficiency for organizations transitioning to cloud-based environments.
Recognized for its centralized management, Microsoft Entra ID significantly boosts organizational security by integrating features such as conditional access and identity protection. It supports a wide array of applications, facilitating a secure transition from on-premises to scalable cloud environments. By adopting robust security measures and flexible identity management, organizations can streamline operations and ensure consistent user experiences. However, challenges like confusing licensing costs, outdated documentation, and limited integration with non-Microsoft applications persist. Enhancements in technical support, interface design, and more granular permissions are needed to address these issues effectively.
What are the key features of Microsoft Entra ID?In healthcare, Microsoft Entra ID facilitates secure patient record access and compliance with industry regulations. Financial institutions rely on it for robust security measures in safeguarding client data. In the education sector, it streamlines access to online resources for students and faculty. Global enterprises benefit from its ability to manage complex identity frameworks across multiple regions, ensuring reliable security amidst increasing cyber threats.
We monitor all Single Sign-On (SSO) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.