Forum Discussion
micheleariis
Oct 08, 2024MCT
Secure Score - Enable conditional access policies to block legacy authentication.
Hi all, it reports me to block legacy authentications for all users, however I have already done so by configuring conditional access; does anyone else have the same report despite the fact that we h...
dkearns950
Oct 08, 2024Copper Contributor
We had the same happen on our secure score for this item over the weekend. We lost points even though we have the policy in place according to how Microsoft requires it and tells people how to configure it. We figure it's a Defender bug and Microsoft will address it.
- micheleariisOct 08, 2024MCT
dkearns950 Okay, I have many recommendations besides this one that have already been implemented but now result to be done
- dkearns950Oct 08, 2024Copper ContributorI experience that a lot, I chase score often. A new Defender recommendation came out and we lost points on the same weekend, so we saw a 12 point dip. That new one, we actually have set more secure than what Microsoft recommends, so will Microsoft update it, who knows. We have other items that we configure as Microsoft states but Defender doesn't recognize it, either because they are looking at one area for it to be configured, but not the new area where they say we should configure it. For example create a CA policy as Microsoft says that is the way going forward, but only award the points if it is configured in the legacy manner, recommendation doesn't get updated for some reason. For those ones that have changed on you, double check that Microsoft hasn't decided to change where it wants to look for it to be completed or they didn't change the standard for which they now give the points.
- micheleariisOct 08, 2024MCT
dkearns950 yes yes, I know; also for example for laps policies.
In my opinion, however, they should take care of these aspects, as many companies see this score as an important reference