# au2mator > Self\-service portal for IT workflows ✓ Trigger PowerShell, Azure Automation \& Orchestrator from one web front\-end\! Generated by Yoast SEO v28.2, this is an llms.txt file, meant for consumption by LLMs. ## Pages - [Privileged Identity Management](https://au2mator.com/privileged-identity-management/) - [App\-Registrierung](https://au2mator.com/app-registrierung/) - [Application Registration](https://au2mator.com/application-registration/) - [Azure Automation Tips](https://au2mator.com/azure-automation-tips/) - [Azure Automation Tipps](https://au2mator.com/azure-automation-tipps/) ## Posts - [au2mator – Self Service Portal 5\.1\.3 released](https://au2mator.com/blog/au2mator-self-service-portal-5-1-3-released/): Discover the exciting new features in the latest version 5\.1\.3 of au2mator\! We have made numerous enhancements and bug fixes to optimize your experience with our self\-service portal\. Look forward to security updates that ensure a safe environment behind the scenes, as well as the evolution of asset management with new roles, views, and reports\. Until version 5\.1\.5, our comprehensive hardware asset management system is available to you for free\. Your feedback is important to us – let us know what you think\! Dive into the complete release details and find out how to take advantage of the latest features\. - [Top 10 Azure PIM\-Rollen, die immer geschützt werden sollten](https://au2mator.com/blog/top-10-azure-pim-rollen/): Nicht jede Administratorrolle ist gleich kritisch\. Einige privilegierte Rollen in Microsoft Entra ID können bei Missbrauch einen gesamten Tenant gefährden\. Dieser Artikel zeigt Best Practices für Azure Privileged Identity Management und erklärt, welche Rollen grundsätzlich mit Just\-in\-Time\-Zugriff geschützt werden sollten – statt sie dauerhaft zu vergeben\. \
\
Das Prinzip ist einfach: Kritische Azure PIM\-Rollen sollten in PIM als „eligible“, also berechtigt, hinterlegt werden – nicht dauerhaft als „active“\. Administratoren aktivieren die Rolle nur dann, wenn sie sie wirklich benötigen\. Die Aktivierung erfolgt zeitlich begrenzt, mit Begründung und je nach Richtlinie mit zusätzlicher Genehmigung\. - [Microsoft PIM: Kosten, Lizenzierung und sinnvolle Alternativen](https://au2mator.com/blog/microsoft-pim-kosten-alternative/): Microsoft Privileged Identity Management, kurz PIM, ist ein leistungsstarkes Werkzeug, um privilegierte Zugriffe in Azure und Microsoft 365 zu steuern\. Unternehmen können damit Least\-Privilege\-Prinzipien durchsetzen, ihre Angriffsfläche reduzieren und Compliance\-Anforderungen besser erfüllen\. \\
Wichtig ist jedoch: Microsoft PIM ist kein eigenständiges Produkt\. Die Funktion ist an bestimmte Premium\-Lizenzen gebunden\. Je mehr Benutzer privilegierten Zugriff benötigen, desto schneller steigen die Kosten\. Gerade für Unternehmen mit hybriden Umgebungen oder nur wenigen konkreten PIM\-Anwendungsfällen steht der Nutzen daher nicht immer im Verhältnis zur Investition\. \\
Dieser Leitfaden zeigt, was Microsoft PIM kostet, welche Lizenzen erforderlich sind und wann eine ergänzende Lösung die bessere Wahl sein kann\. - [Microsoft PIM: What It Costs and When an Alternative Makes More Sense](https://au2mator.com/blog/microsoft-pim-cost-alternative/): Microsoft Privileged Identity Management \(PIM\) is a powerful tool for managing elevated access in Azure and Microsoft 365\. It helps organizations enforce least\-privilege policies, reduce attack surfaces, and meet compliance requirements\. \\
However, PIM is not a standalone product\. It comes bundled with premium license tiers, and the costs can grow quickly depending on how many users need access\. For organizations with hybrid environments or limited PIM use cases, the investment may not always be proportional\. \\
This guide covers what Microsoft PIM costs, which licenses you need, and when a complementary solution can be a better choice\. - [Top 10 Azure PIM Roles That Should Always Be Protected](https://au2mator.com/blog/top-10-azure-pim-roles/): Not every admin role carries the same risk\. Some Microsoft Entra ID privileged roles can compromise an entire tenant if misused\. This article covers Azure Privileged Identity Management best practices and identifies the roles that should always be protected with just in time access azure rather than permanently assigned\. \\
The principle is straightforward: critical Azure PIM roles should be set as "eligible" in PIM, not "active\." Admins activate them when needed, for a limited time, with justification and approval\. ## Downloads - [au2mator Community Download](https://au2mator.com/download/au2mator-community-download/) ## Categories - [Release](https://au2mator.com/blog/release/) - [General](https://au2mator.com/blog/general/) - [Script](https://au2mator.com/blog/script/) ## Optional - [Sitemap index](https://au2mator.com/sitemap_index.xml)