Forum Discussion
The365Guy
Aug 14, 2021Brass Contributor
Guest access process
Hey guys, I have today a special question. We have of course mfa enabled for guest user access. Now we had a special case: a user added a guest to a project in teams. The guest user got a invitatio...
- Aug 14, 2021Oh and btw, you mentioned what you can do about it too. I suggest, if you have the proper license to have a closer look at Identity Protection https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/overview-identity-protection
Highlighting this for ex.
Identity Protection identifies risks of many types, including:
Anonymous IP address use
Atypical travel
Malware linked IP address
Unfamiliar sign-in properties
Leaked credentials
Password spray
and more...
https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/overview-identity-protection#risk-detection-and-remediation
Aug 14, 2021
The365Guy As the intrusion and takeover of the account belongs to another org. it should be that org. taking security actions in their environment to prevent this from happening. As for the scenario you describing I would terminate the guest account asap.
Revoke user access in an emergency in Azure Active Directory | Microsoft Docs
The365Guy
Aug 14, 2021Brass Contributor
I agree with you and we did this when we found out that this happened. I know this question is very special.
- Aug 14, 2021Oh and btw, you mentioned what you can do about it too. I suggest, if you have the proper license to have a closer look at Identity Protection https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/overview-identity-protection
Highlighting this for ex.
Identity Protection identifies risks of many types, including:
Anonymous IP address use
Atypical travel
Malware linked IP address
Unfamiliar sign-in properties
Leaked credentials
Password spray
and more...
https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/overview-identity-protection#risk-detection-and-remediation- The365GuyAug 14, 2021Brass ContributorOh that means identity protection can also protect guest accounts?! I didn’t know that! That was now really helpful! Thanks a lot 🙂
- Aug 14, 2021No worries. Adding this https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/concept-identity-protection-b2b