Microsoft Entra ID Gets Advanced Customization Options for Certificate-Based Authentication

Microsoft has released a new update for its Entra ID Conditional Access service that provides more granular controls over certificate-based authentication (CBA) methods. The advanced CBA options are currently in preview, allowing access to specific resources based on certificate Issuer or Policy Object Identifiers (OIDs) properties. Microsoft Entra ID Conditional Access is a service that…

The post Microsoft Entra ID Gets Advanced Customization Options for Certificate-Based Authentication appeared first on Petri IT Knowledgebase.

Continue reading Microsoft Entra ID Gets Advanced Customization Options for Certificate-Based Authentication

Microsoft to Enable Automatic Conditional Access Policies for Entra ID Customers

Microsoft announced the automatic rollout of new Conditional Access (CA) policies for select Microsoft 365 licenses in November 2023. As of today, these policies are only available in report-only mode, with the activation for commercial customers set for February and March 2024. The report-only mode enables policies to log policy results without enforcing them. Microsoft…

The post Microsoft to Enable Automatic Conditional Access Policies for Entra ID Customers appeared first on Petri IT Knowledgebase.

Continue reading Microsoft to Enable Automatic Conditional Access Policies for Entra ID Customers

What Is IAM? A Guide to Identity and Access Management

Identity and Access Management (IAM), is a crucial cybersecurity framework that governs and secures digital access to resources. It plays a pivotal role in helping organizations control and secure their digital resources such as apps, files, user identities, permissions, and all other organizational data. IAM also helps ensure the confidentiality and integrity of sensitive information….

The post What Is IAM? A Guide to Identity and Access Management appeared first on Petri IT Knowledgebase.

Continue reading What Is IAM? A Guide to Identity and Access Management

Microsoft Details FIDO2 Security and Certificate-Based Authentication Updates

Microsoft has detailed its efforts to enable phishing-resistant authentication methods for organizations. The company is implementing several security features, including device-bound passkeys, FIDO2 support for iOS and macOS apps, and Certificate-Based Authentication updates, to enhance the overall protection for all Entra ID customers. Microsoft has announced that it will soon introduce a new feature for…

The post Microsoft Details FIDO2 Security and Certificate-Based Authentication Updates appeared first on Petri IT Knowledgebase.

Continue reading Microsoft Details FIDO2 Security and Certificate-Based Authentication Updates

Enhancing Cloud Security: Microsoft Details Best Practices to Thwart Identity Compromise

Microsoft has released a comprehensive guide to assist IT administrators in promptly and effectively responding to security breaches within their organizations. The Microsoft Incident Response team detailed best practices to protect workloads in cloud, on-premises, and hybrid environments. Decommission AD FS Microsoft explained that the Active Directory Federation Services (AD FS) could pose a significant…

The post Enhancing Cloud Security: Microsoft Details Best Practices to Thwart Identity Compromise appeared first on Petri IT Knowledgebase.

Continue reading Enhancing Cloud Security: Microsoft Details Best Practices to Thwart Identity Compromise

Microsoft Entra ID Can Now Record Timestamp for Last Successful User Sign-ins

Microsoft has announced that Entra ID customers can now track the last successful sign-in activity for user accounts. This new feature streamlines user account management and provides a solution to reduce the frustrations previously associated with relying solely on sign-in logs. The signInActivity resource is a component of the Microsoft Graph API that allows Entra…

The post Microsoft Entra ID Can Now Record Timestamp for Last Successful User Sign-ins appeared first on Petri IT Knowledgebase.

Continue reading Microsoft Entra ID Can Now Record Timestamp for Last Successful User Sign-ins

Microsoft Entra ID to Get Automatic Conditional Access Policies This Month

Microsoft has announced plans to introduce new Conditional Access policies that will automatically protect customers against potential cyberattacks. Starting next week, the company will begin rolling out the new policies to all eligible commercial customers. “We’ve designed these policies based on our deep knowledge of the current cyberthreat landscape to help our customers strengthen their…

The post Microsoft Entra ID to Get Automatic Conditional Access Policies This Month appeared first on Petri IT Knowledgebase.

Continue reading Microsoft Entra ID to Get Automatic Conditional Access Policies This Month

Windows LAPS Introduces Microsoft Entra ID and Intune Support to Boost Protection

Microsoft has introduced support for Microsoft Entra ID and Microsoft Intune in its Windows LAPS solution. This update enables organizations to easily configure local administrator password policies to protect Windows devices against cyberattacks. Microsoft started rolling out Windows Local Administrator Password Solution (Windows LAPS) in April 2023. The solution replaces the legacy LAPS implementation (Microsoft…

The post Windows LAPS Introduces Microsoft Entra ID and Intune Support to Boost Protection appeared first on Petri IT Knowledgebase.

Continue reading Windows LAPS Introduces Microsoft Entra ID and Intune Support to Boost Protection

How to Properly Secure and Govern Microsoft Entra ID Apps

Microsoft Entra ID, formerly Azure Active Directory (AD), is Microsoft’s cloud-native identity management platform. It only takes one compromised Entra ID user account to consent to a rogue app that siphons all the user’s Microsoft 365 data or to take over their mailbox. Business Email Compromise (BEC) amounts to $8 million in losses on a…

The post How to Properly Secure and Govern Microsoft Entra ID Apps appeared first on Petri IT Knowledgebase.

Continue reading How to Properly Secure and Govern Microsoft Entra ID Apps

Microsoft Entra ID App Registration and Enterprise App Security Explained

One of the main reasons that application governance is often overlooked, as it relates to an organization’s cloud security posture, is because the topic is not fully understood. . However, it is vitally important to understand the fundamentals of Microsoft Entra ID (formerly Azure Active Directory)  – tenants, app registrations, enterprise apps, and consent –…

The post Microsoft Entra ID App Registration and Enterprise App Security Explained appeared first on Petri IT Knowledgebase.

Continue reading Microsoft Entra ID App Registration and Enterprise App Security Explained