-
Notifications
You must be signed in to change notification settings - Fork 70
Microsoft docs
Alexander Filipin edited this page Dec 2, 2020
·
8 revisions
- Apply CA policies to every app
- Minimize the number of CA policies
- Set up emergency access accounts
- Set up report-only mode
- Plan for disruption
- Set naming standards for your policies
- Exclude countries from which you never expect a sign-in.
- Require MFA
- Respond to potentially compromised accounts
- Require managed devices
- Require approved client applications
- Block access
- Block legacy authentication
- Require MFA for administrators
- Require MFA for Azure management
- Require MFA for all users
- Sign-in risk-based Conditional Access
- User risk-based Conditional Access
- Secure security info registration
- Block access by location
- Require compliant devices
- Block access