Azure AD authentication extensions for Azure SQL DB and SQL DW tools

With the latest SQL server tools release we extended the Azure AD authentication support for SQL DB and DW tools for token-based authentication (Universal authentication) with MFA support.

The following SQL Server tools have been extended adding new functionality:

SSMS 17.2 supports the following functionalities:

Multiple-user Azure AD authentication for Universal authentication with multi-factor support (authentication option: Active Directory – Universal with MFA). A new user credential input field was added for the Universal authentication with MFA method to support multi-user authentication. See below myaccount@gmail.com as user name.          

Azure AD MFA Conditional Access (CA) is available for SQL DB and DW.
Database export/import for DacFx wizard using Universal authentication with MFA.
ADAL managed library used by Universal authentication with MFA was upgraded to 3.13.9 version.
Object Explorer support for Universal authentication with MFA.

 

SSMS 17.0 release supports “Azure AD domain name or tenant ID” in Connection Properties, an entry required for Azure AD guest users including Microsoft accounts such as hotmail.com, outlook.com, and live.com, as well as non-Microsoft accounts such as gmail.com. See below aadtest.onmicrosoft.com as AD domain name.

The latest SQLPackage.exe supports Universal authentication with MFA.
Rest API for DacFx supports Universal authentication with MFA.
New CLI interface for SQL DB/DW supports setup operations for Azure AD SQL administrator.

For more information about Azure AD authentication extensions please review the following documents:

Download SQL Server Management Studio (SSMS) July 2017 version17.2
Configure multi-factor authentication for SQL Server Management Studio and Azure AD
Universal Authentication with SQL Database and SQL Data Warehouse (SSMS support for MFA)
Conditional Access (MFA) with Azure SQL Database and Data Warehouse
Configure and manage Azure Active Directory authentication with SQL Database or SQL Data Warehouse
Use Azure Active Directory Authentication for authentication with SQL Database or SQL Data Warehouse
SQLPackage.exe support for UA with MFA  
DacFx UA with MFA support (import a BACPAC file)
DacFx UA with MFA support (export a BACPAC file)
API for UA with MFA support
Download SQLPackage.exe and the DacFx API (SQL Server Data-Tier Application Framework)
CLI for Azure SQL Server Admin Setup
ADAL.dll 3.13.9 release

For further communication on this topic please contact the MFAforSQLDB@microsoft.com alias.
Quelle: Azure

Published by