The WebTitan Azure AD Enterprise App is a built-in component of DNS Proxy. It is responsible for synchronizing Azure Active Directory users and groups to DNS Proxy. It regularly performs scans of the Azure sign-ins to find new sign-ins for users, and pairs the user with the IP address of the computer(s) they are signed in to, so that WebTitan Cloud can apply policies to those users.
The WebTitan Azure AD Enterprise App can be configured for both cloud-based and hybrid environments. Hybrid environments include a combination of cloud-based and on-premise network servers.
Before installing the WebTitan Azure AD Enterprise App, you should:
Have administrator access to the full Azure AD Environment, with the ability to install and configure Azure AD, as well as assign roles and manage the subscriptions of your Active Directory.
Know how to manage Azure resource groups using the Azure portal.
Understand the Azure Virtual Network (VNet) and how it is set up, as you will need to assign a DNS proxy to your VNet.
Know how to create SSH keys.
Set up VNet and Resource Groups in advance.
Ensure that the WebTitan Azure AD Enterprise App has access to the Azure AD reporting APIs in order to provide user sign-in information.
Verify that permission has been set up for the WebTitan Azure AD Enterprise App to use OAuth to authorize access to the Microsoft Azure APIs.
Note
You only have to set up permission once in OAuth. If permission already exists, you will not be prompted to enter your credentials when you click the OAuth link.
Ensure that your subscription has an associated Azure AD Premium license so that sign-in reports can be accessed for a tenant. An Azure AD Premium P1 (or above) license is required to access sign-in reports for any Azure AD tenant. If the directory type is Azure Active Directory, B2C sign-in reports are accessible through the API without any additional license requirement.