
Azure Active Directory Plans
Common Features | Free | Basic | Premium P1 | Premium P2 | Office 365 Apps |
Directory Objects | 500,000 Object Limit | No Object Limit | No Object Limit | No Object Limit | No Object Limit |
User/Group Management (add/update/delete)/ User-based provisioning, Device registration | Available | Available | Available | Available | Available |
Single Sign-On (SSO) | 10 apps per user(pre-integrated SaaS and developer-integrated apps) | 10 apps per user (free tier + Application proxy apps) | No Limit (free, Basic tiers + Self-Service App Integration templates) | No Limit (free, Basic tiers + Self-Service App Integration templates) | 10 apps per user(pre-integrated SaaS and developer-integrated apps) |
B2B Collaboration | Available | Available | Available | Available | Available |
Self-Service Password Change for cloud users | Available | Available | Available | Available | Available |
Connect (Sync engine that extends on-premises directories to Azure Active Directory) | Available | Available | Available | Available | Available |
Security/Usage Reports | Basic Reports | Basic Reports | Advanced Reports | Advanced Reports | Basic Reports |
Premium + Basic Features | Free | Basic | Premium P1 | Premium P2 | Office 365 Apps |
Group-based access management/provisioning | Not available | Available | Available | Available | Available |
Self-Service Password Reset for cloud users | Not available | Available | Available | Available | Available |
Company Branding (Logon Pages/Access Panel customization) | Not available | Available | Available | Available | Available |
Application Proxy | Not available | Available | Available | Available | Not available |
SLA | Not available | Available | Available | Available | Available |
Premium Features | Free | Basic | Premium P1 | Premium P2 | Office 365 Apps |
Advanced group features | Not available | Not available | Available | Available | Not available |
Self-Service Password Reset/Change/Unlock with on-premises writeback | Not available | Not available | Available | Available | Not available |
Device objects two-way synchronization between on-premises directories and Azure AD (Device write-back) | Not available | Not available | Available | Available | Not available |
Multi-Factor Authentication (Cloud and On-premises (MFA Server)) | Not available | Not available | Available | Available | Limited |
Microsoft Identity Manager user CAL | Not available | Not available | Available | Available | Not available |
Cloud App Discovery | Not available | Not available | Available | Available | Not available |
Connect Health | Not available | Not available | Available | Available | Not available |
Automatic password rollover for group accounts | Not available | Not available | Available | Available | Not available |
Conditional Access based on group and location | Not available | Not available | Available | Available | Not available |
Conditional Access based on device state (Allow access from managed devices) | Not available | Not available | Available | Available | Not available |
3rd party identity governance partners integration | Not available | Not available | Available | Available | Not available |
Terms of Use | Not available | Not available | Available | Available | Not available |
SharePoint Limited Access | Not available | Not available | Available | Available | Not available |
OneDrive for Business Limited Access | Not available | Not available | Available | Available | Not available |
Identity Protection | Not available | Not available | Not available | Available | Not available |
Privileged Identity Management | Not available | Not available | Not available | Available | Not available |
3rd party MFA partner integration | Not available | Not available | Available | Available | Not available |
Access Reviews | Not available | Not available | Not available | Available | Not available |
Microsoft Cloud App Security integration | Not available | Not available | Available | Available | Not available |
Azure Active Directory Join – Windows 10 only features | Free | Basic | Premium P1 | Premium P2 | Office 365 Apps |
Join a device to Azure AD, Desktop SSO, Windows Hello for Azure AD, Administrator Bitlocker recovery | Available | Available | Available | Available | Available |
MDM auto-enrollment, Self-Service Bitlocker recovery, Additional local administrators to Windows 10 devices via Azure AD Join, Enterprise State Roaming | Not available | Not available | Available | Available |
More IT Infrastructure Services