Authorization/Authentication Flashcards
What is Zero Trust
Trust no user regardless of location
What 2 things do Zero Trust rely on?
Identity
Location
How is Zero Trust managed?
Managed centrally by Conditional Access
Hosts Zero Trust
Azure Active Directory (AAD)
Conditional Access
Requires grant of pre-set signals
Does not solely rely on username/password
What other layers does CA go through?
Paired with MFA to decide on access privileges
What can CA reject
Users
Devices
Apps
Locations
Groups
Why is Passwordless Authentication used?
Convenient and secure
3 methods of PA
MFA
Microsoft Hello (Face ID)
FIDO2 Security Key: USB
External Guest Users need to be
Configured first
Invited
Granted permissions
Assign to app
Downside of creating Guest users
Guest users have two different accounts
What are legacy apps?
Older apps that do not have cloud adaptabilities
AADDS
Manage Legacy apps and migrate to cloud
AD Flow
Bidirectional btw AD and AAD
AAD to AADDS is one directional
AADDS needs you to
Create a unique domain name