Will Azure Virtual Desktop use Microsoft Entra External ID for external-facing apps?

Juan Bautista Ruiz Alzola 20 Reputation points
2024-04-29T16:36:17.1766667+00:00

According to the AVD documentation, in order to offer apps or desktops running on AVD to external users or customers (cloud-only deployment), identities must be created and managed manually, and then the credentials are provided to the users. Since AVD doesn't support external identities, a separate MS Entra ID in a "per-user access pricing" enrolled subscription should be used for this.

Considering the convergence of Microsoft Entra External ID for external-facing apps (still in preview) with Microsoft Entra ID, I'm doubtful about what Entra ID version should be used for new deployments in this CIAM scenario on AVD. Should it still be MS Entra ID or MS Entra External ID instead?

Azure Virtual Desktop
Azure Virtual Desktop
A Microsoft desktop and app virtualization service that runs on Azure. Previously known as Windows Virtual Desktop.
1,382 questions
Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
2,672 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,750 questions
0 comments No comments
{count} votes

Accepted answer
  1. Anveshreddy Nimmala 2,695 Reputation points Microsoft Vendor
    2024-04-30T07:54:16.2933333+00:00

    Hello Juan Bautista Ruiz Alzola,

    Welcome to microsoft Q&A, Thankyou for posting your query here.

    MS Entra external ID(preview): MS Entra external ID is service is specifically designed for managing identities of external users. It supports scenarios like B2B and B2C by allowing external users to authenticate using their own identities, like (external identity providers and personal social accounts)

    Since MS Entra external ID is designed for external management and indented to integrate with AVD, this would be more appropriate for your scenario , so that large number of external users can be easily managed.

    If an answer has been helpful, please consider accepting the answer to help increase visibility of this question for other members of the Microsoft Q&A community. If not, please let us know what is still needed in the comments so the question can be answered. Thank you for helping to improve Microsoft Q&A!

    25baef31-d725-44a1-a793-1401d68b7215

    1 person found this answer helpful.
    0 comments No comments

0 additional answers

Sort by: Most helpful