#devicejoin — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #devicejoin, aggregated by home.social.
-
Microsoft Entra ID serves as a robust identity and access management solution for modern businesses, enabling secure authentication and authorization across various devices and services. One critical aspect of Microsoft Entra ID management involves device join types, each playing a unique role in defining how devices establish trust and connectivity within the Microsoft Entra ID environment.
📺 Watch my YouTube video bellow 👇 👇
https://youtu.be/RU1Sr-jNKCs -
By default, all users can join devices to Microsoft Entra ID. This can be risky because users can add their personal computers to Microsoft Entra ID, which is usually undesirable.
However, this is even more of a problem when a user account is compromised, and an attacker would join their own computer to Microsoft Entra ID. Such a computer could then potentially become compliant and gain access to internal applications and services, or bypass some of the restrictions from which compliant devices are excluded. In fact, very often MFA is not required from compliant devices.
📺 Watch my YouTube video bellow for more details 👇 👇
https://youtu.be/EaseWT_Mzfk#cswrld #video #tutorial #entraid #cybersecurity #tips #devicejoin
-
Microsoft Entra ID serves as a robust identity and access management solution for modern businesses, enabling secure authentication and authorization across various devices and services.
One critical aspect of Microsoft Entra ID management involves device join types, each playing a unique role in defining how devices establish trust and connectivity within the Microsoft Entra ID environment.
📺 𝐖𝐚𝐭𝐜𝐡 𝐭𝐡𝐞 𝐫𝐞𝐜𝐨𝐫𝐝𝐢𝐧𝐠 𝐨𝐧 𝐏𝐚𝐭𝐫𝐞𝐨𝐧 (English)
https://www.patreon.com/posts/understanding-id-105930870?utm_medium=clipboard_copy&utm_source=copyLink&utm_campaign=postshare_creator&utm_content=join_link📺 𝐖𝐚𝐭𝐜𝐡 𝐭𝐡𝐞 𝐫𝐞𝐜𝐨𝐫𝐝𝐢𝐧𝐠 𝐨𝐧 𝐅𝐨𝐫𝐞𝐧𝐝𝐨𝐫𝐬 (Czech)
https://www.forendors.cz/p/9ccbbf915081f62aa1ccc143452cf57f📺 𝐖𝐚𝐭𝐜𝐡 𝐭𝐡𝐞 𝐫𝐞𝐜𝐨𝐫𝐝𝐢𝐧𝐠 𝐨𝐧 𝐇𝐞𝐫𝐨𝐡𝐞𝐫𝐨 (Czech)
https://herohero.co/cswrld/post/bceroxowdykkdawuywaeryemdrjna👍Share, like, comment!
-
Platform SSO for macOS is finally here!
Microsoft Intune now supports Platform SSO for macOS. Platform SSO expands the SSO app extension by allowing you to configure different authentication methods, simplify the sign-in process for users, and reduce the number of passwords they need to remember.
Platform SSO is a phishing-resistant MFA on macOS that supports passkeys and is very similar to Windows Hello for Business. And also, with platform SSO, your macOS devices become Microsoft Entra joined instead of registered, which allows also other Microsoft Entra ID users to sign-in to company-managed macOS devices.
Read more on my blog 👇👇
https://www.cswrld.com/2024/05/how-to-configure-platform-sso-for-macos-via-intune/#platformsso #macos #intune #entraid #sso #devicejoin #cybersecurity #tips
-
Microsoft Entra ID supports several device join types, each tailored to accommodate different scenarios, device types, and management requirements. Understanding the nuances among these join types is crucial for implementing an effective device management strategy within an Microsoft Entra ID environment.
Read more on my blog https://www.cswrld.com/2024/01/understanding-entra-id-device-join-types/
-
My previous post about #PRT in #AzureAD mentioned #DeviceJoin. There can be three types of device states in Azure AD - Azure AD Join, Azure AD Hybrid Join and Azure AD Registered. All these device types can get PRT and hence #SSO benefit.
Azure AD Joined are devices running Windows 10+ or Windows Server 2019+. These devices are considered corporate devices. PRT is obtained as part of the Windows login through the Cloud Authentication Provider (#CloudAP).
Azure AD Registered are devices that don't have a full join done (such as #BYOD or phones), but we can have the SSO benefit on them. PRT is obtained through the Windows Authentication Manager (#WAM) plugin. The user does not log in to these devices with a corporate account, so CloudAP cannot be used.