Forum Discussion

Vichet SIM's avatar
Vichet SIM
Copper Contributor
Jan 28, 2020
Solved

Transition from baseline policies to security defaults

Hi team,

Any action required from all end users  or affect to them if we we transition to security defaults in Office 365 admin?
Note; currently we are uses baseline policies and all users is already apply MFA using text code & Microsoft Authentication app.

Regards,
Vichet

  • CloudHal's avatar
    CloudHal
    Feb 03, 2020

    Vichet SIM Yes, highly recommend starting with Alex’s spreadsheet here https://www.itpromentor.com/conditional-access-for-the-smb-a-how-to-guide/ Use his spreadsheet and customise it to your needs. Makes it far easier to design them, and is also a good starting point.

12 Replies

  • Vichet SIM's avatar
    Vichet SIM
    Copper Contributor

    Hi All,

    Since Security Default are block legacy authentication protocol for whole tenant. If some of users required this protocol such as IMAP for some use-case, How do we exclude it?

    Thanks for help.
    Regards,
       

    • CloudHal's avatar
      CloudHal
      Iron Contributor

      Vichet SIM you can't, you would need to use conditional access instead and build some policies. But that would require AAD premium.

      • Vichet SIM's avatar
        Vichet SIM
        Copper Contributor

        CloudHal thanks you. Can you provide some tip how build some policies in conditional access. We will go through to AAD premium to fix the issue.

        Regards,

    • CloudHal's avatar
      CloudHal
      Iron Contributor
      I found that this is not true however. You need to register with the app, but after that you can go back to aka.ms/mfasetup and register all the other methods, and they also work just fine.

Resources