https://catalogartifact.azureedge.net/publicartifacts/microsoft.linux-aadsshlogin-arm-1.0.0/Large.png
Azure AD based SSH Login
par Microsoft Corp.
Just a moment, logging you in...
This extension configures your Linux VM for Azure AD based SSH login.
There are many security benefits of using Azure AD with SSH log in to Linux VMs in Azure, including:
- Use your Azure AD credentials to log in to Azure Linux VMs.
- Get SSH certificate-based authentication without needing to distribute SSH keys to users or provision SSH public keys on any Azure Linux VMs you deploy. This experience is much simpler than having to worry about sprawl of stale SSH public keys that could cause unauthorized access.
- Reduce reliance on local administrator accounts, credential theft, and weak credentials.
- Password complexity and password lifetime policies configured for Azure AD help secure Linux VMs as well.
- With Azure role-based access control, specify who can login to a VM as a regular user or with administrator privileges. When users join or leave your team, you can update the Azure RBAC policy for the VM to grant access as appropriate. When employees leave your organization and their user account is disabled or removed from Azure AD, they no longer have access to your resources.
- With Conditional Access, configure policies to require multi-factor authentication and/or require client device you are using to SSH be a managed device (for example: compliant device or hybrid Azure AD joined) before you can SSH to Linux VMs.
- Use Azure deploy and audit policies to require Azure AD login for Linux VMs and to flag use of non-approved local accounts on the VMs.