Book Image

Microsoft Power Platform Enterprise Architecture

By : Robert Rybaric
Book Image

Microsoft Power Platform Enterprise Architecture

By: Robert Rybaric

Overview of this book

For forward-looking architects and decision makers who want to craft complex solutions to serve growing business needs, Microsoft Power Platform Enterprise Architecture offers an array of architectural best practices and techniques. With this book, you’ll learn how to design robust software using the tools available in the Power Platform suite and be able to integrate them seamlessly with various Microsoft 365 and Azure components. Unlike most other resources that are overwhelmingly long and unstructured, this book covers essential concepts using concise yet practical examples to help you save time. You’ll develop the skills you need to architect, design, and manage a complex solution as you follow the journey of a fictitious enterprise customer as they enter the world of Power Platform. Throughout the book, you’ll discover how to combine the functionality of Power Apps, Power Automate, Power BI, and Power Virtual Agents with various methodologies to effectively address application lifecycle management, security, and extensibility. Finally, you'll learn how to overcome common challenges in migrating data to and from Microsoft Power Platform using proven techniques. By the end of this book, you’ll have the strategic perspective of an enterprise architect to make accurate architectural decisions for your complex Power Platform projects.
Table of Contents (15 chapters)
1
Section 1: The Basics
4
Section 2: The Architecture
8
Section 3: Implementation

Contoso Inc. security architecture

After a series of security workshops with their implementation partner Proseware Inc., and after gaining a full understanding of the Power Platform security possibilities, Contoso Inc. has created a security architecture for their Power Platform solution.

In this section, we will describe their security decisions in more detail.

Active Directory integration

After Contoso Inc. already decided to use a two-tenant architecture, it was further decided that a federation-based integration will be implemented with their two AAD tenants. For this purpose, Contoso Inc. will establish a testing active directory forest and implement the Azure AD Connect component for both tenants with all features, including ADFS. This approach will allow them to keep full control over the user identities, the security policies, and other already very well-established IT standards within their existing IT landscape. They will enable the following ADFS features:

    ...