user account for Azure P2S VPN
Right now Azure point-to-site VPN client only using a client certificate for all users to access the Azure point-to-site VPN. For security standpoint, this is really not a good practice. It will be nice if we can have a configuration like other VPN clients, which we can create user credentials (username & password) to connect to Azure network via point-to-site VPN without using a client certificate. This way, we can secure the connection if someone leaves our company without having to recreate the root/client certificate for all users again.
Asger Schøldberg commented
It could be under the name "Radius as a Service" - having it lookup if credentials match for AzureAD accounts.
In our case，we used local AD and CA Server，My CA Certificate Revocation List to issue Internet，If can use the CRL to to revoke the user or Azure P2S VPN can show the connect user used Certificate。
Rishi Ranjan commented
Azure AD or On Prem AD integration for P2S VPN for user authentication
Or better yet, it should use Azure AD.