top of page

Extending onPremise Active Directory to GCP

  • Writer: Anand Nerurkar
    Anand Nerurkar
  • Sep 16, 2023
  • 1 min read

Normally Users and Groups exist in Active Directory and they reside in AD Domain Contoller.


ree

ree

Cloud Identity

===

1.

with Directory Synch, it allow to synch users and groups from on premise to GCP cloud identity .

2. You can set up cloud identity domain to indicate authentication of those user would happen with onpremise federation endpoint.


ree


ree

Google Cloud Directory Synch


ree

setting up users account with below powershell scipt and execute it


ree

This will set up users and grouo in onpremise AD as below


ree
ree

ree

Goto Google Cloud Ditectory synch and click on synch and apply



ree

Goto Google Cloud Identity and refresh it

You will see users ang group in this identity domain.


ree
ree

now users and group are available in Google Cloud Identity, goto IAM


ree

click Add - select group-add role for accessing BigQuery on GCP

ree
ree

we can set up IAM policy for user to access in certian time window and from partucular ip as below.

ree
ree

Below are the scenario where we may set up AD or AD related application in GCP

ree

Architecture Choices are

1.

ree

2.


ree

3.


ree

ree

 
 
 

Recent Posts

See All

Comments

Rated 0 out of 5 stars.
No ratings yet

Add a rating
  • Facebook
  • Twitter
  • LinkedIn

©2024 by AeeroTech. Proudly created with Wix.com

bottom of page