Forum Discussion
LouisMastelinck
Jun 11, 2021Brass Contributor
Azure AD: sign-in risk calculation is wrong?
Hi all, I noticed these past weeks some weird logic in the way sign-in risk is calculated or handled. It especially impactful when MFA is enforced via an CA policy that is based on the users si...
LouisMastelinck
Jun 16, 2021Brass Contributor
update:
Today I have another case of what is according to me wrong risk calculation or risk loss.
1) the user signs-in on apple internet accounts, is interrupted and needs to confirm mfa.
Based on the logs the does not complete the mfa request.
2) the next sign-in log to apple internet accounts is a success.
Sign-in risk is suddenly "none".
Details of sign-in log 1
Details of sign-in log 2
It does not make sense to me that the user loses his risk after a failed mfa request according to the logs.