Forum Discussion
micheleariis
Oct 08, 2024MCT
Secure Score - Enable conditional access policies to block legacy authentication.
Hi all, it reports me to block legacy authentications for all users, however I have already done so by configuring conditional access; does anyone else have the same report despite the fact that we h...
cbcraig
Oct 11, 2024Copper Contributor
i opened an Entra support ticket and they had me turn the policies all off; advised me to wait 48 hours then check the score again for some reason.
at that point, i am likely just going to turn them back on and hope that they correctly report.
"have you tried turning it off and on again?"
at that point, i am likely just going to turn them back on and hope that they correctly report.
"have you tried turning it off and on again?"
dkearns950
Oct 11, 2024Copper Contributor
Turning off security measures for a period of time doesn't seem like a prudent measure to do, surprised Microsoft would recommend it. This is affecting a lot of people and a lot of recommendations. Curious to see how it goes.
- cbcraigOct 11, 2024Copper Contributormy instinct would have been to try to delete the regressed policies and recreate them exactly as they were. i did not want to do so without reaching out first. ever since the call though, i will admit i have been sitting here considering reenabling a couple of the more egregious holes that are now open due to their advice
- micheleariisOct 14, 2024MCT
cbcraig Hi, for a policy I tried to remove it and recreate it but unfortunately the score was not updated.
- cbcraigOct 14, 2024Copper Contributormicheleariis I would give your changes at least 48 hours to sync if the last Microsoft tech that I spoke with was correct. My scores are still all 0's on the particular Identity recommendations that I've been working on getting credited
- cbcraigOct 11, 2024Copper Contributorok i reverted and have turned all policies back on; there is no reason i'm increasing our attack surface over the weekend to help Microsoft troubleshoot a failing reporting service