About This Architecture

Enterprise asset access context integrating legacy on-premises systems (SAP, GMAT, Taleo LMS) with Azure identity infrastructure via Azure Data Factory and Azure SQL. Data flows from enterprise sources through sync jobs into Cosmos DB, where an RBAC Function App enforces entitlements based on dealer product history, product-country status, and user group membership. Entra External ID provides federated authentication to the Dealer Portal, while planned Alibaba CDN integration optimizes global content delivery. This architecture demonstrates hybrid identity governance bridging legacy enterprise systems with modern Azure IAM and external identity management.

People also ask

How do you design an Azure IDMS architecture that integrates legacy enterprise systems with modern identity governance for external dealer access?

This diagram shows a hybrid approach: SAP and Taleo feed into Azure Data Factory, which syncs entitlements to Cosmos DB via Azure SQL views. The RBAC Function App queries Cosmos DB to enforce access based on dealer product history and user groups, while Entra External ID handles federated authentication to the Dealer Portal.

IDMS Enterprise Asset Access Context

AzureadvancedIdentity ManagementIDMSEntra External IDEnterprise ArchitectureHybrid Systems
Domain: Cloud AzureAudience: Azure identity and access management architects designing enterprise asset access control
0 views0 favoritesPublic

Created by

July 24, 2026

Updated

July 24, 2026 at 4:52 AM

Type

architecture

Need a custom architecture diagram?

Describe your architecture in plain English and get a production-ready Draw.io diagram in seconds. Works for AWS, Azure, GCP, Kubernetes, and more.

Generate with AI

AI-generated. Verify before production use. Learn more

Report this diagram