> ## Documentation Index
> Fetch the complete documentation index at: https://docs.tensor9.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Microsoft Entra ID

> Microsoft Entra ID is the tenant directory holding users, groups and app registrations, and it issues the tokens Azure resources accept.

## Coverage by target cloud

Adapted onto AWS, Google Cloud, OCI, and Private Kubernetes.

## On AWS, Google Cloud, OCI, and Private Kubernetes

This adapter uses the target cloud's services.

Tensor9 adapts Microsoft Entra ID policies onto your customer's target cloud. At the [Infrastructure only adaptation tier](/service-adapters/overview#adaptation-tiers), permissions declared by your infrastructure become target-native grants. At the [Max adaptation tier](/service-adapters/overview#adaptation-tiers), your IAM service adapter answers supported origin-cloud IAM calls and evaluates the adapted policy model inside the appliance.

### Policy compatibility

Tensor9 checks the IAM constructs your stack uses before deployment. A policy that cannot be adapted fails as a whole instead of losing unsupported rules. The supported constructs depend on the origin policy and target cloud; review the result for your stack.

[Service Catalog](/service-adapters/catalog).
