Authorization/Authentication, MFA, and more Flashcards

1
Q

MFA

A

-No license is required to configure MFA, but the user must be a Global Administrator
-Free is reduced funtionality
-You get full featuted MFA with and Azure AD P1 or P2 license

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the four MFA modes?

A

-Phone call
-SMS texr message
-MS Authenticator app
-OATH token code

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

3 ways to enable MFA in Azure

A

-Change the user state
-Configure MFA registration policy in Azure AD Identity Protection
-Create a Conditional Access Policy in Azure AD

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

All users start out disabled in MFA

A

When you enroll users in Azure MFA, their state changes to enabled.
When enabled users sign in and complete the registration process, their state changes to enforced

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Users are not happy to perform MFA from the same device every time they login. What should you configure to enhance usability?

A

Enable remember multifactor Authentication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the difference between OpenID connect and OAuth 2.0?

A

-OAuth 2.0 is a protocol used for authorization
-OpenID Connect is a protocol used for authentication
-OpenID Connect is an extension of OAuth 2.0

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

In OAuth 2.0/Open ID Connect, what does the authentication provider return to the browser after a successful authentication?

A

ID token in JSON Web Token (JWT) format

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Microsoft Hello for Business

A

include “passwordless” signin model that uses the users face to signin to the local machine

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Azure AD - B2B

A

-allows organizations to securly share their apps and services with guest users from other external organizations, while allowing them to retain control over their data.
-provides an easy to use invitation and redemption process that allows external users to use their own credentials to access partner resources
-These users are represented as guest users in your Azure AD

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

B2B Direct Connect

A

establishes mutual trust relationships for seamless collaboration

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Azure AD - B2C

A

-provides business to customer identity as a service
-allows an organizations customers to access the organizations apps via SSO that uses their existing social and enterprise or local account identities
-uses OpenID Connect, OAuth 2.0
-think Facebook, Google, or other providers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly