The FreeRADIUS project, the open source implementation of RADIUS, is an IETF protocol for AAA (Authorisation, Authentication, and Accounting).
N/A
Microsoft Entra ID
Score 8.9 out of 10
N/A
Microsoft Entra ID (formerly Microsoft Azure Active Directory or Azure AD) is a cloud-based identity and access management (IAM) solution supporting restricted access to applications with Azure Multi-Factor Authentication (MFA) built-in, single sign-on (SSO), B2B collaboration controls, self-service password, and integration with Microsoft productivity and cloud storage (Office 365, OneDrive, etc) as well as 3rd party services.
Back in the days when our company was primarily Linux and tiny we used to use free radius from Linux for our basic authentication. We only had around 3-4 Microsoft devices then and a few apple devices. But we outgrew the solution as soon as we started growing. We stuck with …
FreeRADIUS is completely scalable and supports both large and small user databases. Because it doesn't take up a lot of server resources, FreeRADIUS is well-suited for organizations with small budgets (it's in the name!) and limited networking hardware. While there is a port of it for Windows, FreeRADIUS is native to Linux so that would be a limitation for many companies who don't use it.
It is well suited for creating and updating and deleting employee attributes through Azure AD provisioning. But there can be some scenarios such as installation of provisioning agent documentation can be improved with proper screenshots. This will help consultants better in further implementations in future. The integration perspective is good but still the documentation available has scope of improvement.
Microsoft Entra ID's biometric authentication improves security and streamlines user access through facial recognition and fingerprint scanning, which are reliable and practical.
Users can easily confirm their identities using biometrics, smart cards, or PINs, increasing security without disrupting business operations.
Microsoft Entra ID provides us with a thorough security comprehension by allowing us to effectively manage user identities, regulate access entitlements, and track authentication events.
In an Office 365 environment Entra ID is part of the package, it makes life easier compared to a traditional active directory.
It’s feature rich, packed with analytics and security features to protect users from being compromised, it can be costly to equip all users with the extra features but is well worth the time saved and the extra features to avoid potential security breaches that can be costly for companies.
The SSO features and integration into 3rd party applications is something that interests us, but a lot of our specialist software doesn’t support it, but it’s currently being developed so that will be another feature we will be using in the future.
I think it can be hard to manage, but only because it is so big. Any time you have a lot you can do the management of it gets harder. They do a good job making it good to use and document the product very well.
I have not needed to engage support for anything at this time. I have been able to find the answers either online or in a knowledgebase. I tried to skip the question but it would not let me, so I rated a 9 based on other interactions with Microsoft support I have had
Make sure you use a good partner. Our implementation was a bit longer and more problematic than we expected. Our partner got it done, but, in my opinion, some of their inexperience and staffing issues were evident.
Microsoft seems to be the better service for cloud identity syncing and is still a leader in this realm. Their service is reliable, and we use it with all of our clients. Compared to Okta, the cost is more affordable and they include a lot of services in the Microsoft licensing plans. This makes it the better option for most cases.
Microsoft Professional Services' technical knowledge is appreciable as consultants design the solution as per customer requirements. Mapping of features per user specifications and assisting Customer IT engineers to implement so they can manage and administer the services.
We previously used Microsoft Network Policy Server for our RADIUS authentication which works ok but was pretty clunky and requires Windows Server. Switching to FreeRADIUS brought our cost down to zero.
Because FreeRADIUS works natively in Linux it's easy to setup and works with all distros.
FreeRADIUS allows us to have user authentication for wifi which is much more secure than a simple shared password solution.
I believe that the reduction in requests for lost access passwords has been considerably reduced by 20%.
There has been an increase in the productivity of each user who has used Entra ID; what these types of programs do is act as a motivator for users so that they can work more comfortably and avoid procrastinating.