Home

Customized token lifetimes and O365 apps

%3CLINGO-SUB%20id%3D%22lingo-sub-171148%22%20slang%3D%22en-US%22%3ECustomized%20token%20lifetimes%20and%20O365%20apps%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-171148%22%20slang%3D%22en-US%22%3E%3CP%3ECan%20someone%20confirm%20if%20customized%20token%20lifetimes%20apply%20to%20O365%3F%20Is%20there%20a%20list%20of%20apps%20supported%3F%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EAccording%20to%20link%20below%20customized%20token%20lifetimes%20apply%20to%20Office%20365%20only%20entire%20tenant%20is%20modified.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fcloudblogs.microsoft.com%2Fenterprisemobility%2F2016%2F10%2F11%2Fconfigurable-token-lifetimes-in-azuread-are-now-public-preview%2F%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%20noopener%20noreferrer%22%3Ehttps%3A%2F%2Fcloudblogs.microsoft.com%2Fenterprisemobility%2F2016%2F10%2F11%2Fconfigurable-token-lifetimes-in-azuread-are-now-public-preview%2F%3C%2FA%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-171148%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EAuthentication%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-177271%22%20slang%3D%22en-US%22%3ERe%3A%20Customized%20token%20lifetimes%20and%20O365%20apps%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-177271%22%20slang%3D%22en-US%22%3EThis%20feature%20is%20still%20in%20public%20preview.%20Therefore%20anything%20known%20about%20it%20is%20likely%20to%20change.%20If%20the%20doc%20says%20it%20apply%20to%20all%20Office%20365%2C%20then%20they%20are%20all%20effected%20by%20the%20same%20token%20length.%3CBR%20%2F%3E%3CBR%20%2F%3EMicrosoft%20recently%20raised%20token%20lengths%20to%2090%20days%20on%20new%20tenants%2C%20so%20you%20could%20do%20that%20and%20improve%20your%20tenant%20security%20(less%20login%20prompts%20%3D%20less%20opportunities%20for%20being%20phished).%20Contrary%2C%20if%20you%20present%20login%20pages%20to%20users%20frequently%20and%20often%20then%20users%20just%20type%20their%20password%20everywhere%20they%20get%20asked%2C%20which%20means%20more%20login%20prompts%20is%20more%20opportunities%20to%20be%20phished.%20Longer%20token%20length%20equals%20less%20password%20use%2C%20equals%20more%20secure%20app%20access.%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-173792%22%20slang%3D%22en-US%22%3ERe%3A%20Customized%20token%20lifetimes%20and%20O365%20apps%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-173792%22%20slang%3D%22en-US%22%3E%3CP%3EAnyone%3F%3C%2FP%3E%3C%2FLINGO-BODY%3E
Highlighted
New Contributor

Can someone confirm if customized token lifetimes apply to O365? Is there a list of apps supported?

 

According to link below customized token lifetimes apply to Office 365 only entire tenant is modified.

 

https://cloudblogs.microsoft.com/enterprisemobility/2016/10/11/configurable-token-lifetimes-in-azure...

 

 

2 Replies

Anyone?

Highlighted
This feature is still in public preview. Therefore anything known about it is likely to change. If the doc says it apply to all Office 365, then they are all effected by the same token length.

Microsoft recently raised token lengths to 90 days on new tenants, so you could do that and improve your tenant security (less login prompts = less opportunities for being phished). Contrary, if you present login pages to users frequently and often then users just type their password everywhere they get asked, which means more login prompts is more opportunities to be phished. Longer token length equals less password use, equals more secure app access.