The new Active Directory service was designed as a source of identities used when granting access to a customer's Office 365 services. Configuring the appropriate authentication mechanisms (RBAC and AADP) to ensure reliable access to Office 365 services using AD accounts was a key factor. Note that role-based access control (RBAC) models may differ between Microsoft 365 services and Azure AD roles used at the Azure AD level.

