
conditional access system
16
MENTIONS
5
EPISODES
3
PODCASTS
Search complete. 16 mentions across 5 episodes found for "conditional access system".
Aug 31, 2026
How General Motors Moved 200,000 People to Passkeys
A
9:40Andrew CameronGUEST
where we just made that a mandatory configuration on their device where they had to at least set up a PIN and have that registered as a passkey.
A
9:48Andrew CameronGUEST
And from there, it was, that's why, you know, conditional access is such a key technology that we're able to then start to guide our CA policies to have a mandate for requiring only the strong auth methods and start to disable using the weaker methods.
M
10:06Merill FernandoHOST
Right.
M
10:06Merill FernandoHOST
Nice.
13 MINS LATER
M
23:29Merill FernandoHOST
Yeah.
A
23:30Andrew CameronGUEST
Yeah, what we do and has worked really well is we just target small groups.
A
23:36Andrew CameronGUEST
You know, conditional access policies are great for that, for targeting small groups of users and letting them kind of validate the advanced security experiences that we're rolling out.
A
23:48Andrew CameronGUEST
And that becomes immediate feedback because that group, typically security-facing users, are eager and willing to adopt everything that's asked of them.
Microsoft Entra memberOf Retirement: What Admins Must Do
M
16:46Merill FernandoHOST
Because most probably the assumption is that everyone is covered.
M
16:50Merill FernandoHOST
The thing that's confusing is conditional access does support nested groups.
G
16:57Gregor ReimlingGUEST
Yeah.
G
16:57Gregor ReimlingGUEST
And I think this is really also the complex thing about nested groups that you have this limitation.
G
17:02Gregor ReimlingGUEST
So I've seen also that you can use it for conditional access and you cannot use this for GSA.
G
17:07Gregor ReimlingGUEST
I see also you cannot use it for licensing.
G
17:10Gregor ReimlingGUEST
So when you have members in nested groups and assign it to a group which is a less licensed assigned, the nested group members doesn't get the license.
6 MINS LATER
E
22:55Eric WoodruffGUEST
I was wondering how they're saying that once, you know, we hit that date and the dynamic group won't process anymore, are you able to still then edit the dynamic group rules if you wanted to change it to some other rule set? Or can you only change it before we hit the...
P
Unknown podcast
Zimbra Zero-Click RCE, Check Point Bypass, and Device Code Phishing
Aug 24 · 3 Mentions
M
15:02Mauven MacLeodHOST
Without it, you've no forensic record of what happened in the event of a compromise.
M
15:07Mauven MacLeodHOST
Consider conditional access policies that restrict or flag device code authentication flows, particularly for accounts with access to sensitive SharePoint content.
M
15:17Mauven MacLeodHOST
And if your organization is on Microsoft 365 Business Basic or Standard, raise this specifically with your IT provider.
M
15:25Mauven MacLeodHOST
We covered conditional access licensing in episode 36 on Thursday, and it's worth revisiting.
M
15:31Mauven MacLeodHOST
Conditional access availability varies by license tier, and you need to know where the compensating controls are in place if the full feature set isn't available to you.
M
15:41Mauven MacLeodHOST
Three separate threats.
M
15:42Mauven MacLeodHOST
One common thread running through all of them.
Licensing, Security & Management: Making Microsoft 365 Defender and Intune Work Together with Videsh Chavan
V
20:03Videsh ChavanGUEST
Okay? Then the second was is like, of course, identifying the first baseline.
V
20:08Videsh ChavanGUEST
Okay? Like here, uh, we should make conditional access and identity protection as the foundation-
M
20:13Mirko PetersHOST
Mm-hmm
V
20:13Videsh ChavanGUEST
... not an afterthought, of course.
36 MINS LATER
M
55:48Mirko PetersHOST
Uh, cloud native or hybrid?
V
55:50Videsh ChavanGUEST
Uh, hybrid.
M
55:52Mirko PetersHOST
Uh, compliance policy or conditional access?
V
55:56Videsh ChavanGUEST
Conditional access.
Pass-the-Passkey: What Michael Grafnetter's Black Hat Research Means for Entra Admins
M
20:57Michael GrafnetterGUEST
They, they should read the, the information written in the dialog window without just automatically clicking the OK button.
M
21:09Michael GrafnetterGUEST
So against some, some other attacks, it makes sense to create more advanced conditional access policies, you know.
M
21:17Michael GrafnetterGUEST
So not only requiring phishing-resistant authenticators, but also requiring compliant devices and so on, making sure that EDR is really running on that computer, making sure that some permission security hardening is applied on that computer from which a person, and especially a privileged user, is accessing the cloud services.
M
21:41Michael GrafnetterGUEST
And I'm, I'm not saying to, to apply such security hardening to, to all of your devices, but s- uh, you should, you should definitely treat devices of global administrators differently than other devices.