Enterprise Active Directory description

Enterprise Active Directory (EAD) is one of the core components of UBC's Identity and Access Management (IAM) Program. EAD provides centralized authentication and access control for Microsoft Windows-based services across campus such as H:/Drive, and FASMail on premises.

EAD synchronizes with Microsoft Entra ID (formerly Azure AD) to enable seamless access to Microsoft 365 services such as FASMail Exchange Online, as well as UBC's Hybrid Cloud Service.

Since 2010, departments have increasingly consolidated their Active Directory infrastructures by migrating to the Enterprise Active Directory (EAD) service. This centralization of directory services offers substantial benefits:

  • Identity Lifecycle Management: Automated systems manage the complete account lifecycle, from creation to deactivation, based on authoritative system records and compliance requirements. This ensures timely access to enterprise services when users join and automatic removal of access privileges when they depart, reducing security risks and maintaining service license compliance
  • Enhanced Security and Compliance: Centralized security policies, automated access reviews, and unified audit logging strengthen the organization's security posture and simplify compliance reporting
  • Streamlined Authentication: Single Sign-On (SSO) capabilities allow users to access multiple systems with one set of credentials, reducing password fatigue and help desk calls
  • Simplified IT Administration: Consolidates identity management tasks into a single platform, significantly reducing administrative overhead and improving operational efficiency
  • Business Continuity: Offers continuous service availability through redundant infrastructure across multiple geographical locations, comprehensive disaster recovery capabilities, and optimized performance that scales with organizational demands
  • Modern Identity Infrastructure: Enables hybrid identity scenarios, supporting both on-premises and cloud services through seamless integration with EntraID/AzureAD and other cloud platforms
  • Cost Optimization: Reduces infrastructure costs through shared resources, consolidated licensing, and decreased support requirements
  • Identity Intelligence: Enables advanced analytics and reporting on access patterns, security events, and compliance metrics across the enterprise
  • Scalable Architecture: Supports organizational growth and change through a flexible, enterprise-grade directory infrastructure
  • Standardized Directory Services: Delivers unified directory services where standardization enables seamless resource sharing, simplified troubleshooting, and predictable system behavior across all organizational units. IT teams can efficiently implement and maintain security baselines, software deployment strategies, and configuration settings through centralized policy management

Page last updated on April 22, 2025


UBC Crest The official logo of the University of British Columbia. Urgent Message An exclamation mark in a speech bubble. Bluesky The logo for the Bluesky social media service. Bookmark A bookmark in a book. Browser A web browser window. Caret An arrowhead indicating direction. Arrow An arrow indicating direction. Arrow in Circle An arrow indicating direction. Arrow in Circle An arrow indicating direction. Time A clock. Chats Two speech clouds. E-commerce Cart A shopping cart. Facebook The logo for the Facebook social media service. Help A question mark in a circle. Home A house in silhouette. Information The letter 'i' in a circle. Instagram The logo for the Instagram social media service. Linkedin The logo for the LinkedIn social media service. Location Pin A map location pin. Mail An envelope. Menu Three horizontal lines indicating a menu. Minus A minus sign. Pencil A pencil indicating that this is editable. Telephone An antique telephone. Play A media play button. Plus A plus symbol indicating more or the ability to add. Search A magnifying glass. Settings A single gear. Arrow indicating share action A directional arrow. Speech Bubble A speech bubble. Star An outline of a star. Twitter / X The logo for the X (aka, Twitter) social media service. User A silhouette of a person. Vimeo The logo for the Vimeo video sharing service. Youtube The logo for the YouTube video sharing service.