25
Your Customer / Prospect Your Company Name Azure AD Assessment MICROSOFT CLOUD ASSESSMENT CONFIDENTIALITY NOTE: The information contained in this report document is for the exclusive use of the client specified above and may contain confidential, privileged and non-disclosable information. If the recipient of this report is not the client or addressee, such recipient is strictly prohibited from reading, photocopying, distributing or otherwise using this report or its contents in any way.

Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

  • Upload
    others

  • View
    7

  • Download
    1

Embed Size (px)

Citation preview

Page 1: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Your Customer / Prospect

Your Company Name

Azure AD Assessment

MICROSOFT CLOUD ASSESSMENT

CONFIDENTIALITY NOTE: The information contained in this report document is for the exclusive use of the client specified above and may contain confidential, privileged and non-disclosable information. If the recipient of this report is not the client or addressee, such recipient is strictly prohibited from reading, photocopying, distributing or otherwise using this report or its contents in any way.

Page 2: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 2 of 25

Table of Contents 1 - Overview

2 - Organization

3 - Domains

4 - Supported Services

5 - On Premise Sync

6 - Applications

7 - Web URLs

8 - Organization Contacts

9 - Proxy Addresses

10 - Service Plans

11 - Subscribed SKUs

12 - Groups

12.1 - Cloud Only

12.2 - On Premise Synced

13 - Users

14 - Devices

Page 3: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 3 of 25

1 - Overview This report provides an assessment of the Azure Active Directory environment, including cross application configurations along with users and groups. The Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction with on-premise Active Directory in a hybrid configuration. This report documents the various configuration settings and entities for audit purposes and can be used as point in time documentation for disaster recovery purposes.

2 - Organization The organization is the highest-level entity in the Microsoft Cloud and represents the owner of the Azure AD environment. Below is a listing of the general contact information of the organization along with the configured technical notification email. Please ensure the information is accurate and up to date to avoid misdirected notices and delays in communication of key account and infrastructure issues.

Display Name MYCO

Street 123 Wall St

State GA

City ATLANTA

Postal Code 30338

Country US

Technical Notifications sent to:

[email protected]

3 - Domains

Page 4: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 4 of 25

The organization can support multiple domains both external and internal. Domains are required to be verified before they can be actively used. Verification can be done through multiple techniques, including special external DNS records. The primary default domain is highlighted in bold. Authentication be managed directly by Azure AD or federated.

Domain Parent Domain Authentication

Type Is Admin Managed

Is Default Is Initial Is Root Is Verified

myco.com Managed Yes No No Yes Yes

myco.mail.onmicrosoft.com Managed Yes No No Yes Yes

myco.onmicrosoft.com Managed Yes Yes Yes Yes Yes

4 - Supported Services One or more services can be supported by the Azure AD environment per domain. The table below lists all managed domains and the supported services. The most common supported service is Email, which allows the sending and receiving of emails both internally and externally.

Domain Supported Services

myco.com Email

myco.onmicrosoft.com Email Office Communications Online

5 - On Premise Sync Some configurations of Azure AD involve on-premise domain controllers where settings from the cloud are synced to and from. If On Premise Sync is enabled, the last time is documented here. If the last sync time is greater than 15 days, it is highlighted in red, possibly indicating syncing issues or a misconfiguration and should be investigated.

Property Setting

On Premise Sync Enabled Yes

On Premise Sync Last Synced 05/20/2020 5:52:05 PM -04:00

Page 5: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 5 of 25

6 - Applications Beyond standard Microsoft services, the Microsoft Cloud and Azure AD can support custom applications. These applications become part of the Azure AD and may have direct access to certain resources that are part of the Microsoft Cloud infrastructure. It is important to periodically review applications to ensure that the minimum necessary are installed and configured properly.

Display Name App ID Sign In Audience Is Fallback Public Client Information URLs

Atlassian Cloud 8779ac90-11db-4f6b-bb87-11b38d9881d9

My Org No

JIRA Cloud ed9771fa-792e-42a7-8a09-8937e0a8e77d

My Org

dev.myco.api 493f2cea-0579-4620-ae90-2b64e47ee2b7

My Org

Myco.Api b6d651e1-0058-48cf-8a2b-2cdebffcb22c

My Org

Myco.Api.Prod b4bff8ce-8c2d-4647-91be-6b910fcaa855

My Org

SharePoint Online Client Extensibility Web Application Principal

edc7a213-a478-43a6-a7b1-e062f640aac5

My Org

SharePoint Online Client Extensibility Web Application Principal Helper

7437274b-f793-42e3-a684-4d3da0dfecbf

My Org

SpamServer 22ee55e6-86e7-449c-874e-588bb9d94e6b

My Org

testMail 666efe4f-0b80-4806-9552-b5a09f31071c

My Org

Myco Azure Data Collector b914f5d8-dd8e-4866-9b54-31a71b4438d3

Multiple Orgs Yes ⚫ Logo URL: https://secure.aadcdn.microsoftonline-p.com/dbd5a2dd-l5eht3gydm3ymsglseaolm5ad2tcqwzhd4engr6qruq/appbranding/nsywlqnpjiijh1vehycrllx-awwhuntouslq-

Page 6: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 6 of 25

Display Name App ID Sign In Audience Is Fallback Public Client Information URLs

piikd0/1033/bannerlogo?ts=637068451322721132 ⚫ Privacy URL: https://www.rapidfiretools.com/privacy-policy ⚫ Terms of Service URL: https://www.rapidfiretools.com/eula

365 Connector 2f726732-9382-4444-a77e-132e1b638d9d

My Org

Zoom for Outlook b84dae46-4e0a-4fcd-a86d-a4d02b3ab7fe

My Org

Zoom 9a9d5c87-da15-4f50-852f-5bcb051a39bc

My Org

ZMail - Email Tracking & Sync to Salesforce

7c2e4dfa-10ac-4baf-a059-8f11184675e8

My Org

Sales 4d477b77-1c3d-4fca-ae1e-3a2b9a0b9175

My Org

7 - Web URLs Web URLs can be published by Azure AD for custom applications. Three primary URLs can be specified including a Home Page URL, Redirect URIs, and a Logout URL. These are typically configured by the administrator when installing the application. Periodic audits of Web URLs are highly recommended to avoid misconfiguration due to human error and to ensure malicious applications do not direct users to non-approved sites.

Application Home Page URL Redirect URIs

AutomationReadonly http://AutomationReadonly

Myco.Api https://dev.myco.net/brm-api/api/oauth/postLogin

Myco.Api.Prod https://dev.myco.com/brm-api/api/oauth/postLogin

My Python App http://localhost:8000/tutorial/callback

Page 7: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 7 of 25

Application Home Page URL Redirect URIs

SharePoint Online Client Extensibility Web Application Principal Helper

https://myco-admin.sharepoint.com/_forms/spfxsinglesignon.aspx

myapplication-dev-app https://login.myapplication.com/api/auth/microsoft/login

myapplication-local http://localhost:8080/api/auth/microsoft/login

WebApplication1 https://localhost:44368/ https://localhost:44368/

Myco Azure Data Collector https://www.myco.com msalb914f5d8-dd8e-4866-9b54-31a71b4438d3://auth

8 - Organization Contacts Organization contacts represent external email addresses that are managed and can be used in the Azure AD environment. These entities exist alongside standard users and groups and are often seen globally. It is important to ensure organization contacts are configured to the proper external email addresses and authorized.

Display Name Mail Mail Nickname Given Name Surname

Amalia Neale [email protected] Amalia.neale Amalia neale

benn vance [email protected] benn.vance Benn Vance

cwilder [email protected] cwilder Curtis Wilder

dmcintyre [email protected] Dmcintyre Daniela Mcintyre

order-processing [email protected]

order-processing order processing

paulina.seymour [email protected] paulina.seymour Paulina Seymour

PurchaseOrders [email protected] PurchaseOrders1 Purchase Orders

VIP Helpdesk [email protected] vip-helpdesk VIP Helpdesk

9 - Proxy Addresses

Page 8: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 8 of 25

The following table lists proxy addresses for various mail accounts. If Azure AD is being synchronized with an external Active Directory, a set of Azure AD settings govern whether the addresses are synchronized or not. Proxy addresses can contain various address entry types including SMTP addresses, X500 addresses, SIP addresses, as well as others.

Label Display Name Description Mail Proxy Addresses

Groups Accounting [email protected] SMTP:[email protected]

OrgContacts Amalia Neale [email protected] SMTP:[email protected]

OrgContacts benn vance [email protected] SMTP:[email protected]

OrgContacts cwilder [email protected] SMTP:[email protected]

OrgContacts dmcintyre [email protected] SMTP: [email protected]

OrgContacts order-processing [email protected]

SMTP:[email protected]

OrgContacts Paulina Seymour [email protected] SMTP:[email protected]

OrgContacts PurchaseOrders [email protected] SMTP:[email protected]

OrgContacts VIP Helpdesk [email protected] SMTP:[email protected]

User Group Account Management Team group for Myco Account Management Teams

[email protected]

SPO:SPO_1234-41fa-b2b8-1236c183366e@SPO_a1cd3436-6062-4169-a1bd-11111111

User Group Account Management Team group for Myco Account Management Teams

[email protected]

SMTP:[email protected]

User Group AccountChanges [email protected] SMTP:[email protected]

User Group Accounting [email protected] SMTP:[email protected]

User Group Beta Mail group for [email protected] [email protected] smtp:[email protected]

User Group Beta Mail group for [email protected] [email protected] x500:/o=ExchangeLabs/ou=Exchange Administrative Group (FYDIBOHF23SPDLT)/cn=Recipients/cn=myco.onmicrosoft.com-1234-Beta38c

User Group Beta Mail group for [email protected] [email protected] SMTP:[email protected]

User Group Business Operations Business Operations [email protected]

SPO:SPO_1234-4296-b6ce-d6867d9bb38d@SPO_a1cd3436-6062-4169-a1bd-44444444

Page 9: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 9 of 25

Label Display Name Description Mail Proxy Addresses

User Group Business Operations Business Operations [email protected]

SMTP:[email protected]

User Group Channel Marketing [email protected] x500:/o=ExchangeLabs/ou=Exchange Administrative Group (FYDIBOHF23SPDLT)/cn=Recipients/cn=1234-Channel Mar

User Group Channel Marketing [email protected] SMTP:[email protected]

User Group CustOps CustOps [email protected] SMTP:[email protected]

User Group CustOps CustOps [email protected] smtp:[email protected]

User Group Customer Support Management Customer Support Management [email protected] SPO:SPO_1234-4460-9eb6-8aa7b840ec74@SPO_a1cd3436-6062-4169-a1bd-22222222

User Group Customer Support Management Customer Support Management [email protected] SMTP:[email protected]

User Group Customer Support Management Customer Support Management [email protected] smtp:[email protected]

User Group DevelopmentTeam Mail Group for Dev [email protected] smtp:[email protected]

User Group DevelopmentTeam Mail Group for Dev [email protected] x500:/o=ExchangeLabs/ou=Exchange Administrative Group (FYDIBOHF23SPDLT)/cn=Recipients/cn=1234-Development

User Group DevOps DevOps [email protected] SPO:SPO_1234-4150-9505-20664a5e843f@SPO_a1cd3436-6062-4169-a1bd-79efdcfd8a5e

User Group DevOps DevOps [email protected] SMTP:[email protected]

User Group Director, IT Initiatives Delegation of Initiatives for IT team.

[email protected]

SPO:SPO_1234-480b-8b09-c520817d5fb5@SPO_a1cd3436-6062-4169-a1bd-79efdcfd8a5e

User Group Director, IT Initiatives Delegation of Initiatives for IT team.

[email protected]

SMTP:[email protected]

User Group Director, IT Initiatives Delegation of Initiatives for IT team.

[email protected]

smtp:[email protected]

User Group Documentation [email protected] smtp:[email protected]

Page 10: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 10 of 25

Label Display Name Description Mail Proxy Addresses

User Group Documentation [email protected] x500:/o=ExchangeLabs/ou=Exchange Administrative Group (FYDIBOHF23SPDLT)/cn=Recipients/cn=cb477bb928db3e9bd931bc-Documentati

User Group Documentation [email protected] SMTP:[email protected]

User Group Engineering [email protected] SMTP:[email protected]

User Group General General [email protected] SPO:SPO_1234-4a7d-962f-efaacf486c27@SPO_a1cd3436-6062-4169-a1bd-79efdcfd8a5e

User Group General General [email protected] SMTP:[email protected]

User Group HR Team Whole HR / Recruitment Team [email protected] SPO:SPO_1234-42e3-bcd6-35132490f879@SPO_a1cd3436-6062-4169-a1bd-79efdcfd8a5e

User Group HR Team Whole HR / Recruitment Team [email protected] SMTP:[email protected]

User Group HR Team Whole HR / Recruitment Team [email protected] smtp:[email protected]

User Group InternalIT Internal IT System Admin/Engineers

[email protected] SMTP:[email protected]

User Group InternalIT Internal IT System Admin/Engineers

[email protected] smtp:[email protected]

User Group Maintenance Maintenance group [email protected] SMTP:[email protected]

User Group Managers [email protected] x500:/o=ExchangeLabs/ou=Exchange Administrative Group (FYDIBOHF23SPDLT)/cn=Recipients/cn=myco.onmicrosoft.com-1234-Managers287

User Group Managers [email protected] SMTP:[email protected]

User Group Marketing Marketing [email protected] SMTP:[email protected]

User Group PR [email protected] smtp:[email protected]

User Group PR [email protected] x500:/o=ExchangeLabs/ou=Exchange Administrative Group (FYDIBOHF23SPDLT)/cn=Recipients/cn=myco.onmicrosoft.com-1234-PRf11

User Group QA [email protected] smtp:[email protected]

Page 11: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 11 of 25

Label Display Name Description Mail Proxy Addresses

User Group QA [email protected] x500:/o=ExchangeLabs/ou=Exchange Administrative Group (FYDIBOHF23SPDLT)/cn=Recipients/cn=12341234-QA

User Group QA [email protected] SMTP:[email protected]

User Group QA Team QA team members [email protected] SPO:SPO_1234-42cf-8fc3-de2da7dd1db4@SPO_1234-4169-a1bd-79efdcfd8a5e

User Group QA Team QA team members [email protected] SMTP:[email protected]

User Group QA Team QA team members [email protected] smtp:[email protected]

User Group R&D R&D [email protected]

SMTP:[email protected]

User Group R&D Myco [email protected] SMTP:[email protected]

User Group R&D Managers Information for those in management roles within R&D

[email protected] SPO:SPO_1234-ad3f-c55daa96b91d@SPO_a1cd3436-6062-4169-a1bd-55555555

User Group R&D Managers Information for those in management roles within R&D

[email protected] SMTP:[email protected]

User Group R&D Managers Information for those in management roles within R&D

[email protected] smtp:[email protected]

User Group R&D Ops R&D Ops [email protected] smtp:[email protected]

User Group R&D Ops R&D Ops [email protected] SMTP:[email protected]

User Group R&D Ops R&D Ops [email protected] SPO:SPO_1234-48f2-8dc7-d8881269514e@SPO_a1cd3436-6062-4169-a1bd-79efdcfd8a5e

User Group Sales [email protected]

x500:/o=ExchangeLabs/ou=Exchange Administrative Group (FYDIBOHF23SPDLT)/cn=Recipients/cn=1234-Sales_b76ba

User Group Sales [email protected]

x500:/o=ExchangeLabs/ou=Exchange Administrative Group (FYDIBOHF23SPDLT)/cn=Recipients/cn=1234-Sales

Page 12: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 12 of 25

Label Display Name Description Mail Proxy Addresses

User Group Sales [email protected]

SMTP:[email protected]

User Group Security [email protected] x500:/o=ExchangeLabs/ou=Exchange Administrative Group (FYDIBOHF23SPDLT)/cn=Recipients/cn=9f4c8ebc38712a06d50475-Security

User Group Security [email protected] SMTP:[email protected]

10 - Service Plans The following table lists the various service plans available the organization and their provisioning status. Plans can be applied to company, group, or user levels as indicated in the table below. Success indicates that the plan was properly provisioned and is available for use with the target entities. Please note that the availability of a plan does not mean the actual use of licenses of the plans.

Service Plan Name Provisioning Status Applies To

EXCHANGE_ENTERPRISE Success User

EXCHANGE_FOUNDATION Success Company

EXCHANGE_STANDARD Success User

FORMS_PLAN_E1 Success User

FORMS_PLAN_E3 Success User

Microsoft Stream Success User

MICROSOFT_SEARCH Success Company

MICROSOFTBOOKINGS Success User

POWERAPPS_O365_P1 Success User

POWERAPPS_O365_P2 Success User

POWERAPPS_P2_VIRAL Success User

POWERAPPS_PER_USER Success User

PROJECTWORKMANAGEMENT Success User

Page 13: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 13 of 25

11 - Subscribed SKUs The following table lists the Subscribed SKUs along with their current license consumption. High consumption may be an indicator that additional licenses may be required in the near future.

SKU Part Number Capability

Status Consumed

Units Prepaid Units

Service Plans Applies To Enabled Suspended Warning

FLOW_FREE Enabled 2 10000 0 0 EXCHANGE_S_FOUNDATION EXCHANGE_S_FOUNDATION DYN365_CDS_VIRAL

FLOW_P2_VIRAL

User

INTUNE_A Suspended 13 0 25 0 EXCHANGE_S_FOUNDATION EXCHANGE_S_FOUNDATION INTUNE_A

User

O365_BUSINESS_ESSENTIALS

Enabled 6 6 0 0 FLOW_O365_P1 FLOW_O365_P1 MCOSTANDARD FORMS_PLAN_E1 MYANALYTICS_P2

STREAM_O365_SMB DYN365_CDS_O365_P1 KAIZALA_O365_P2 TEAMS1 BPOS_S_TODO_1

YAMMER_ENTERPRISE INTUNE_O365 POWERAPPS_O365_P1 MICROSOFT_SEARCH

EXCHANGE_S_STANDARD SWAY PROJECT_O365_P1 PROJECTWORKMANAGEMENT

WHITEBOARD_PLAN1 OFFICEMOBILE_SUBSCRIPTION

SHAREPOINTSTANDARD SHAREPOINTWAC

User

STANDARDPACK Enabled 3 5 0 0 FLOW_O365_P1 FLOW_O365_P1 MCOSTANDARD FORMS_PLAN_E1 MYANALYTICS_P2

DYN365_CDS_O365_P1 KAIZALA_O365_P2 TEAMS1 BPOS_S_TODO_1 STREAM_O365_E1

YAMMER_ENTERPRISE INTUNE_O365 Deskless POWERAPPS_O365_P1 MICROSOFT_SEARCH

EXCHANGE_S_STANDARD SWAY PROJECT_O365_P1 PROJECTWORKMANAGEMENT

WHITEBOARD_PLAN1 OFFICEMOBILE_SUBSCRIPTION

SHAREPOINTSTANDARD SHAREPOINTWAC

User

TEAMS_COMMERCIAL_TRIAL

Enabled 13 0 0 500000 FLOW_O365_P1 FLOW_O365_P1 EXCHANGE_S_FOUNDATION FORMS_PLAN_E1

User

Page 14: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 14 of 25

SKU Part Number Capability

Status Consumed

Units Prepaid Units

Service Plans Applies To Enabled Suspended Warning

MCO_TEAMS_IW TEAMS1 STREAM_O365_E1 YAMMER_ENTERPRISE SHAREPOINTDESKLESS

POWERAPPS_O365_P1 SWAY PROJECTWORKMANAGEMENT WHITEBOARD_PLAN1

SHAREPOINTWAC

TEAMS_EXPLORATORY

Enabled 6 100 0 0 FLOW_O365_P1 FLOW_O365_P1 FORMS_PLAN_E1 MYANALYTICS_P2 MCO_TEAMS_IW TEAMS1

BPOS_S_TODO_1 STREAM_O365_E1 YAMMER_ENTERPRISE INTUNE_O365 Deskless POWERAPPS_O365_P1 MICROSOFT_SEARCH

EXCHANGE_S_STANDARD SWAY PROJECTWORKMANAGEMENT WHITEBOARD_PLAN1

OFFICEMOBILE_SUBSCRIPTION SHAREPOINTSTANDARD SHAREPOINTWAC

User

WINDOWS_STORE Enabled 0 1000000 0 0 EXCHANGE_S_FOUNDATION EXCHANGE_S_FOUNDATION WINDOWS_STORE

Company

12 - Groups Groups are used for various purposes in the Microsoft Cloud, including mail distribution groups, security groups, and Microsoft Teams. Groups that have the Mail Enabled property active can be emailed internally and externally depending on the visibility. Traditional Active Directory groups can be mapped to Azure AD groups by looking at the Mail Enabled and Security Enabled settings. Security groups will have Mail Enabled set to No and Security Enabled set to Yes. Mail Enabled security groups will have Mail Enabled set to Yes and Security Enabled set to Yes. Distribution groups have Mail Enabled set to Yes and Security Enabled set to No. The list of groups should be reviewed on a periodic basis to ensure settings and visibility are configured properly, as well as to reduce the number of groups to the minimum necessary to avoid security risks.

12.1 - Cloud Only

Display Name Description Mail Mail Enabled Mail Nickname Security Enabled Visibility

Accounting [email protected]

Yes accounting No

Page 15: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 15 of 25

Display Name Description Mail Mail Enabled Mail Nickname Security Enabled Visibility

All VP's [email protected] Yes AllVP's No

Automation Automation [email protected]

Yes Automation No Private

Automation Exchange Support

[email protected]

Yes AutomationExchangeSupport

No

CustOps CustOps [email protected] Yes CustOps No Public

Corp Managers [email protected]

Yes CorpManagers No

Creative Team Creative Team [email protected]

Yes CreativeTeam No Private

DevOps DevOps [email protected]

Yes DevOps No Private

Engineering [email protected]

Yes engineering No

Engineering Docker [email protected]

Yes EngineeringDocker No

General General [email protected]

Yes General No Public

HR Team Whole HR / Recruitment Team

[email protected] Yes HRTeam No Private

InternalIT Internal IT System Admin/Engineers

[email protected] Yes internalit No Private

Interview Interview [email protected]

Yes Interview No Private

Invoicing Tasks Invoicing Tasks [email protected]

Yes InvoicingTasks No Private

Sales Administration Sales Admin Group [email protected]

Yes SalesAdministration No Private

Team SalesOps [email protected]

Yes TeamSalesOps No

Technical Writing Technical Writing [email protected]

Yes TechnicalWriting No Public

Page 16: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 16 of 25

Display Name Description Mail Mail Enabled Mail Nickname Security Enabled Visibility

UAT [email protected] Yes myco.uat No

UAT Documentation This is a site where the members of the UAT team can keep track of session reports and store any useful documentation.

[email protected]

Yes UATDocumentation No Public

12.2 - On Premise Synced

Display Name Description Mail Mail Enabled

Mail Nickname Security Enabled

On Premise Domain (NetBIOS Name)

On Premise Account Name

Sync Enabled

Last Synced

dev-jira-admins

No dev-jira-admins

Yes myco.com (MYCO) dev-jira-admins

Yes 1/13/2020 6:47:08 PM +00:00

dev-jira-bc No dev-jira-bc Yes myco.com (MYCO) dev-jira-bc Yes 2/28/2020 3:26:26 PM +00:00

dev-jira-create-issues

T1 support No dev-jira-create-issues

Yes myco.com (MYCO) dev-jira-create-issues

Yes 3/24/2020 4:38:37 PM +00:00

dev-jira-developers

No dev-jira-developers

Yes myco.com (MYCO) dev-jira-developers

Yes 5/18/2020 4:23:19 PM +00:00

dev-jira-doc Documentation server access

No dev-jira-doc Yes myco.com (MYCO) dev-jira-doc Yes 3/14/2019 3:48:30 PM +00:00

dev-jira-productmanagement

Product Management

No dev-jira-productmanagement

Yes myco.com (MYCO) dev-jira-productmanagement

Yes 3/2/2020 2:30:39 PM +00:00

dev-jira-qpe Quality and Performance Engineering

No dev-jira-qpe Yes myco.com (MYCO) dev-jira-qpe Yes 3/14/2019 3:48:30 PM +00:00

dev-jira-release-approvers

Release Approvers

No dev-jira-release-approvers

Yes myco.com (MYCO) dev-jira-release-approvers

Yes 1/5/2020 10:27:47 AM +00:00

dev-jira-support Support T3/T4 No dev-jira-support Yes myco.com (MYCO) dev-jira-support Yes 5/13/2020 11:45:03 AM +00:00

Page 17: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 17 of 25

Display Name Description Mail Mail Enabled

Mail Nickname Security Enabled

On Premise Domain (NetBIOS Name)

On Premise Account Name

Sync Enabled

Last Synced

dev-jira-users No dev-jira-users Yes myco.com (MYCO) dev-jira-users Yes 5/18/2020 4:23:19 PM +00:00

dev-jira-support Support T3/T4 No dev-jira-support Yes myco.com (MYCO) dev-jira-support Yes 5/13/2020 11:45:03 AM +00:00

dev-jira-users No dev-jira-users Yes myco.com (MYCO) dev-jira-users Yes 5/18/2020 4:23:19 PM +00:00

13 - Users Users represent the base level accounts in Azure AD. Users are typically associated with people, but may be used for shared accounts, emails accounts, and users required for application access. The management of users to the minimum necessary is crucial to the security of any environment. The user list should be reviewed periodically to ensure that no terminated users or unnecessary accounts are still active in the list of users.

Display Name Given Name Surname Job Title Admin MFA Enabled

Mail Last Login

Amalia Neale Amaliea Neale No No [email protected]

Ameera Lyons Ameera Lyons Strategy & Operations Associate

No No [email protected]

benn vance benn vance No No [email protected]

Brian Richard Brian Richard Senior Customer Support Engineer

No Yes [email protected]

Charity Carroll Charity Carroll Chief Financial Officer

No Yes [email protected]

Curtis Wilder Curtis Wilder No No [email protected]

Daniela Mcintyre Daniela Mcintyre Sr. Project Manager No No [email protected]

Georgina Schofield Georgina Schofield Customer Support Engineer

No No [email protected]

Gilbert Amin Gilbert Amin No No [email protected]

HR Integration HR Integration No No [email protected]

Page 18: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 18 of 25

Display Name Given Name Surname Job Title Admin MFA Enabled

Mail Last Login

HR Scheduler HR Scheduler No No [email protected]

Jack Jones Jack Jones Senior Engineer - Infrastructure Management Services

Yes Yes [email protected]

Jaya Small No No [email protected]

Kaycee House Kaycee House Customer Support Representative

No No [email protected]

kelly lees kelly lees Customer Support Engineer

No No [email protected]

Lacey-May Miller Lacey Miller Director of Support No No [email protected]

Legal Legal Legal No Yes [email protected] 07/13/2020 6:12:13 PM

Lorelai Benjamin Lorelai Benjamin Customer Support Representative

No No [email protected]

maurice steele maurice steele Professional Services Consultant

No No [email protected]

monique sampson monique sampson Lead Sales Engineer No No [email protected]

natalie grey Senior Installation Engineer

No Yes [email protected]

N Harwood N Harwood No No [email protected]

Oliver Scott Oliver Scott No No [email protected]

Olivia-Grace Millar Olivia-Grace Millar No No [email protected]

Paulina Seymour Paulina Seymour Director, Business Operations

No Yes [email protected]

Pheobe Halliday Pheobe Halliday Director, Business Operations

No Yes [email protected]

Rubina Sharief rubina sharief Fulfilment Analyst No No [email protected]

Rizwan Singh Rizwan Singh Executive HR No No [email protected]

Sales Ops Sales Ops No No [email protected]

Page 19: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 19 of 25

Display Name Given Name Surname Job Title Admin MFA Enabled

Mail Last Login

Sales Service Desk Sales Service Desk No No [email protected]

Storm Connor Storm Connor Statutory Accountant No No [email protected]

Ticketing Ticketing Service Account No No [email protected]

UI Feedback UI Feedback No No [email protected]

UI Mailbox UI Mailbox No No [email protected]

Valerie Hodge Valerie Hodge Corporate Recruiter No No [email protected]

Viaan Tapia Viann Tapia No No [email protected]

Weekend Watch Weekend Watch No No [email protected]

Wellness Wellness Service Account Belongs to HR, used for Benefit Questions

No No [email protected]

William Lott William Lott Associate Inside Channel Account Manager

No No [email protected]

Xavier Daugherty Xavier Daugherty Video Content Editor No No [email protected]

Xtra No No [email protected]

Yanni Zavala Yanni Zavala Senior Engineer – Infrastructure Management Services

No Yes [email protected]

Yuri Lowenthal Yuri Lowenthal Senior Engineer – Infrastructure Management Services

No Yes [email protected]

Zara Berry Zara Berry Business analyst No No [email protected]

Zahraa Valdez Zahraa Valdez No No [email protected]

14 - Devices

Page 20: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 20 of 25

The following list of devices have been registered directly with Azure AD. Please note that some devices may be registered with on premise Active Directory environments and may not appear in the list of Azure AD devices. Devices must be registered by the device owner, who themselves must be an Azure AD user.

Display Name OS Name OS Version Physical IDs Profile Type Trust Type Approximate Last Sign In

Owner

DESKPC-J3FJEN7 Windows 10.0.17763.0 [USER-HWID]: e223-457c-aa02-

7f05e3146b02:6825780042417740

RegisteredDevice Workplace 5/16/2020 2:36:25 AM

+00:00

Neriah Salt ([email protected])

DESKPC-JGENV43 Windows 10.0.18362.0 [USER-HWID]: 90b6-4d0a-8880-

48aa574cb6b0:6966508384389947

RegisteredDevice Workplace 5/6/2020 1:03:30 PM +00:00

Margo Owens ([email protected])

DESKPC-JU776TF Windows 10.0.18363.0 [USER-HWID]: edcb-43f3-a615-

8661299fa6b7:6896143551341215

RegisteredDevice Workplace 5/19/2020 9:54:06 PM

+00:00

Annabelle Simmons ([email protected])

DESKPC-JV0FCFN Windows 10.0.17134.0 [USER-HWID]: be68-4d8f-835e-

99e4afe339e3:6966503715591830

RegisteredDevice Workplace 5/8/2020 1:23:58 AM +00:00

Bentley Donovan ([email protected])

DESKPC-JV1A3CD Windows 10.0.17763.0 [USER-HWID]:414f-4340-ac56-

0aa2b9187f60:6825775093367929

RegisteredDevice Workplace 3/4/2020 2:13:38 PM +00:00

Taya Ridley ([email protected])

DESKPC-K64TA71 Windows 10.0.17763.0 [USER-HWID]: 43c9-4990-b813-

cec02c29a1f1:6896129849297088

RegisteredDevice Workplace 5/9/2020 3:51:07 PM +00:00

Alysha Rose ([email protected])

DESKPC-K9RES63 Windows 10.0.17763.0 [USER-HWID]: a9a6-4fda-953c-

cc89a62f651e:6825780425046662

RegisteredDevice Workplace 5/15/2020 7:59:50 PM

+00:00

Olly Lopez ([email protected])

Page 21: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 21 of 25

Display Name OS Name OS Version Physical IDs Profile Type Trust Type Approximate Last Sign In

Owner

DESKPC-KDRHTHJ Windows 10.0.17763.0 [USER-HWID]: c31c-4859-b458-

b059174b68a0:6966504696531735

RegisteredDevice Workplace 5/20/2020 12:20:02 AM

+00:00

Kacy Wright ([email protected])

DESKPC-KIUEGBU Windows 10.0.18362.0 [USER-HWID]: 3b7d-4742-840b-

23ff5a0d70c4:6896137783791022

RegisteredDevice Workplace 5/17/2020 9:02:55 PM

+00:00

Sasha Sinclair ([email protected])

DESKPC-MDFSHPR Windows 10.0.17134.0 [USER-HWID]: c3a1-42ed-8cff-bcdd86f9b861:6755400526329

798

RegisteredDevice Workplace 11/9/2019 9:49:24 PM

+00:00

Jorge Galvan ([email protected])

DESKPC-MEN808E Windows 10.0.17763.0 [USER-HWID]: 319b-4090-80fa-

cab3b24dbdd5:6896144059572113

RegisteredDevice Workplace 5/13/2020 5:14:23 PM

+00:00

Sam Cooper ([email protected])

DESKPC-MREK7AH Windows 10.0.18363.0 [USER-HWID]: fa72-4160-90b0-

1bc95b4651df:6966501247647707

RegisteredDevice Workplace 5/9/2020 3:59:50 PM +00:00

Benedict Branch ([email protected])

DESKPC-MSVRB5F Windows 10.0.17763.0 [USER-HWID]: e496-45db-999a-

08a19e0f5532:6896133295853506

RegisteredDevice Workplace 6/20/2019 12:41:23 PM

+00:00

Carlos Eaton ([email protected])

DESKPC-MUC6NQR Windows 10.0.18362.0 [USER-HWID]: 15c3-48a7-b78f-

34f16228cb1a:6825781002870667

RegisteredDevice Workplace 5/17/2020 11:31:49 PM

+00:00

Olly Vasquez ([email protected])

DESKPC-NGHBN3D Windows 10.0.18362.0 [USER-HWID]: b84b-44d9-911b-

7ddcb21cf724:6966508521176744

RegisteredDevice Workplace 10/2/2019 6:42:43 PM

+00:00

Luca Wicks ([email protected])

DESKPC-NGHBN3D Windows 10.0.18362.0 [USER-HWID]: b0ca-4cec-9305-

283cf8311795:6825779630003137

RegisteredDevice Workplace 4/8/2020 10:24:29 PM

+00:00

Spencer Barnes ([email protected])

Page 22: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 22 of 25

Display Name OS Name OS Version Physical IDs Profile Type Trust Type Approximate Last Sign In

Owner

DESKPC-NGHBN3D Windows 10.0.18362.0 [USER-HWID]: 01e4-4be1-8631-

9fcc8085cd3c:6825779630003137

RegisteredDevice Workplace 7/22/2019 1:36:58 PM

+00:00

Tarik Reed ([email protected])

DESKPC-NGHBN3D Windows 10.0.18362.0 [USER-HWID]: 67e6-4be1-bd6d-

47a9d3d3729d:6755404885427839

RegisteredDevice Workplace 11/14/2019 12:10:27 PM

+00:00

Dennis Woods ([email protected])

DESKPC-NGHBN3D Windows 10.0.18362.0 [USER-HWID]: 8ec7-4936-b2a6-

e699fcd76329:6825769400569673

RegisteredDevice Workplace 8/23/2019 4:19:19 PM

+00:00

Elias Hilton ([email protected])

DESKPC-NMFO6E8 Windows 10.0.18362.0 [USER-HWID]: 1cf9-46ce-83a1-

ad1da1612daa:6896142598382531

RegisteredDevice Workplace 4/15/2020 6:35:28 PM

+00:00

Antonio Murphy ([email protected])

DESKPC-NSA9PCR Windows 10.0.17134.0 [USER-HWID]: 90b6-4d0a-8880-

48aa574cb6b0:6966500842570685

RegisteredDevice Workplace 3/20/2020 10:11:43 PM

+00:00

William Fitzpatrick ([email protected])

DESKPC-OFB6729 Windows 10.0.17763.0 [USER-HWID]:ab27-4c5a-82b0-

3771493c7331:6966501250863610

RegisteredDevice Workplace 5/13/2020 10:12:13 AM

+00:00

Nolan Ferry ([email protected])

DESKPC-J3FJEN7 Windows 10.0.17763.0 [USER-HWID]: e223-457c-aa02-

7f05e3146b02:6825780042417740

RegisteredDevice Workplace 5/16/2020 2:36:25 AM

+00:00

Neriah Salt ([email protected])

DESKPC-JGENV43 Windows 10.0.18362.0 [USER-HWID]: 90b6-4d0a-8880-

48aa574cb6b0:6966508384389947

RegisteredDevice Workplace 5/6/2020 1:03:30 PM +00:00

Margo Owens ([email protected])

DESKPC-JU776TF Windows 10.0.18363.0 [USER-HWID]: edcb-43f3-a615-

8661299fa6b7:6896143551341215

RegisteredDevice Workplace 5/19/2020 9:54:06 PM

+00:00

Annabelle Simmons ([email protected])

Page 23: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 23 of 25

Display Name OS Name OS Version Physical IDs Profile Type Trust Type Approximate Last Sign In

Owner

DESKPC-JV0FCFN Windows 10.0.17134.0 [USER-HWID]: be68-4d8f-835e-

99e4afe339e3:6966503715591830

RegisteredDevice Workplace 5/8/2020 1:23:58 AM +00:00

Bentley Donovan ([email protected])

DESKPC-JV1A3CD Windows 10.0.17763.0 [USER-HWID]:414f-4340-ac56-

0aa2b9187f60:6825775093367929

RegisteredDevice Workplace 3/4/2020 2:13:38 PM +00:00

Taya Ridley ([email protected])

DESKPC-K64TA71 Windows 10.0.17763.0 [USER-HWID]: 43c9-4990-b813-

cec02c29a1f1:6896129849297088

RegisteredDevice Workplace 5/9/2020 3:51:07 PM +00:00

Alysha Rose ([email protected])

DESKPC-K9RES63 Windows 10.0.17763.0 [USER-HWID]: a9a6-4fda-953c-

cc89a62f651e:6825780425046662

RegisteredDevice Workplace 5/15/2020 7:59:50 PM

+00:00

Olly Lopez ([email protected])

DESKPC-KDRHTHJ Windows 10.0.17763.0 [USER-HWID]: c31c-4859-b458-

b059174b68a0:6966504696531735

RegisteredDevice Workplace 5/20/2020 12:20:02 AM

+00:00

Kacy Wright ([email protected])

DESKPC-KIUEGBU Windows 10.0.18362.0 [USER-HWID]: 3b7d-4742-840b-

23ff5a0d70c4:6896137783791022

RegisteredDevice Workplace 5/17/2020 9:02:55 PM

+00:00

Sasha Sinclair ([email protected])

DESKPC-MDFSHPR Windows 10.0.17134.0 [USER-HWID]: c3a1-42ed-8cff-bcdd86f9b861:6755400526329

798

RegisteredDevice Workplace 11/9/2019 9:49:24 PM

+00:00

Jorge Galvan ([email protected])

DESKPC-MEN808E Windows 10.0.17763.0 [USER-HWID]: 319b-4090-80fa-

cab3b24dbdd5:6896144059572113

RegisteredDevice Workplace 5/13/2020 5:14:23 PM

+00:00

Sam Cooper ([email protected])

DESKPC-MREK7AH Windows 10.0.18363.0 [USER-HWID]: fa72-4160-90b0-

1bc95b4651df:6966501247647707

RegisteredDevice Workplace 5/9/2020 3:59:50 PM +00:00

Benedict Branch ([email protected])

Page 24: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 24 of 25

Display Name OS Name OS Version Physical IDs Profile Type Trust Type Approximate Last Sign In

Owner

DESKPC-MSVRB5F Windows 10.0.17763.0 [USER-HWID]: e496-45db-999a-

08a19e0f5532:6896133295853506

RegisteredDevice Workplace 6/20/2019 12:41:23 PM

+00:00

Carlos Eaton ([email protected])

DESKPC-MUC6NQR Windows 10.0.18362.0 [USER-HWID]: 15c3-48a7-b78f-

34f16228cb1a:6825781002870667

RegisteredDevice Workplace 5/17/2020 11:31:49 PM

+00:00

Olly Vasquez ([email protected])

DESKPC-NGHBN3D Windows 10.0.18362.0 [USER-HWID]: b84b-44d9-911b-

7ddcb21cf724:6966508521176744

RegisteredDevice Workplace 10/2/2019 6:42:43 PM

+00:00

Luca Wicks ([email protected])

DESKPC-NGHBN3D Windows 10.0.18362.0 [USER-HWID]: b0ca-4cec-9305-

283cf8311795:6825779630003137

RegisteredDevice Workplace 4/8/2020 10:24:29 PM

+00:00

Spencer Barnes ([email protected])

DESKPC-NGHBN3D Windows 10.0.18362.0 [USER-HWID]: 01e4-4be1-8631-

9fcc8085cd3c:6825779630003137

RegisteredDevice Workplace 7/22/2019 1:36:58 PM

+00:00

Tarik Reed ([email protected])

DESKPC-NGHBN3D Windows 10.0.18362.0 [USER-HWID]: 67e6-4be1-bd6d-

47a9d3d3729d:6755404885427839

RegisteredDevice Workplace 11/14/2019 12:10:27 PM

+00:00

Dennis Woods ([email protected])

DESKPC-NGHBN3D Windows 10.0.18362.0 [USER-HWID]: 8ec7-4936-b2a6-

e699fcd76329:6825769400569673

RegisteredDevice Workplace 8/23/2019 4:19:19 PM

+00:00

Elias Hilton ([email protected])

DESKPC-NMFO6E8 Windows 10.0.18362.0 [USER-HWID]: 1cf9-46ce-83a1-

ad1da1612daa:6896142598382531

RegisteredDevice Workplace 4/15/2020 6:35:28 PM

+00:00

Antonio Murphy ([email protected])

DESKPC-NSA9PCR Windows 10.0.17134.0 [USER-HWID]: 90b6-4d0a-8880-

48aa574cb6b0:6966500842570685

RegisteredDevice Workplace 3/20/2020 10:11:43 PM

+00:00

William Fitzpatrick ([email protected])

Page 25: Azure AD Assessment - RapidFire Tools · Azure AD forms the basis of access control and global configuration for the Microsoft Cloud. In some cases, Azure AD is used in conjunction

Azure AD Assessment MICROSOFT CLOUD ASSESSMENT

PROPRIETARY Page 25 of 25

Display Name OS Name OS Version Physical IDs Profile Type Trust Type Approximate Last Sign In

Owner

DESKPC-OFB6729 Windows 10.0.17763.0 [USER-HWID]:ab27-4c5a-82b0-

3771493c7331:6966501250863610

RegisteredDevice Workplace 5/13/2020 10:12:13 AM

+00:00

Nolan Ferry ([email protected])

DESKPC-J3FJEN7 Windows 10.0.17763.0 [USER-HWID]: e223-457c-aa02-

7f05e3146b02:6825780042417740

RegisteredDevice Workplace 5/16/2020 2:36:25 AM

+00:00

Neriah Salt ([email protected])

DESKPC-JGENV43 Windows 10.0.18362.0 [USER-HWID]: 90b6-4d0a-8880-

48aa574cb6b0:6966508384389947

RegisteredDevice Workplace 5/6/2020 1:03:30 PM +00:00

Margo Owens ([email protected])

DESKPC-JU776TF Windows 10.0.18363.0 [USER-HWID]: edcb-43f3-a615-

8661299fa6b7:6896143551341215

RegisteredDevice Workplace 5/19/2020 9:54:06 PM

+00:00

Annabelle Simmons ([email protected])

DESKPC-JV0FCFN Windows 10.0.17134.0 [USER-HWID]: be68-4d8f-835e-

99e4afe339e3:6966503715591830

RegisteredDevice Workplace 5/8/2020 1:23:58 AM +00:00

Bentley Donovan ([email protected])