Authenticate to Azure AD with a Yubikey!

preview_player
Показать описание
Looking to improve your security beyond just a simple username and password, and even more beyond device-based multifactor authentication (or MFA)? Better secure your Office 365, Microsoft 365, or Azure environment with FIDO2. Go pick yourself up a Yubikey (or other FIDO2 key) and follow along as we set it up as an MFA option with Azure AD.

0:00 Intro
0:30 Enforcing FIDO2 MFA in Azure AD Conditional Access
2:00 Introduction to the Yubikey 5C NFC
4:02 Setting up the Yubikey 5C NFC with my Azure AD Account
7:22 Logging into Microsoft 365 with my FIDO2 key
8:26 NFC doesn't work on macOS for Azure AD :(
9:09 Conclusion
9:44 Outro

Yubikey's

Intelligink

Ben

Podcast
Рекомендации по теме
Комментарии
Автор

Thank you! I couldn't find where to enable Security Keys on Azure AD. Super helpful!!

CyberrDummy
Автор

Brilliant video, and thank you for the guide in the description too

robster
Автор

When you insert your key and subsequently get prompted for pin and fingerprint, that is essentially three factor authentication. A person told me on the sysadmin reddit board that something was wrong and you should only authenticate by putting in the key and using EITHER the pin or the fingerprint. Not both. Another youtuber stated that you get prompted for a PIN if you are too slow to use your fingerprint. Any thoughts? I haven't been able to get just one or the other. With my Azure MFA when using a Yubikey, I have to enter both pin and fingerprint

michaelpietrzak_in_SD
Автор

can Passkey prevent cookie & token from been stolen &/or be used elsewhere????
can Password less Authentication prevent cookie & token from been stolen &/or be used elsewhere????

fbifido
Автор

Is there a way to set this up as the users FIRST and ONLY method of MFA? For users with tinfoil hats who refuse to install the authenticator on their phone....

penguin
visit shbcf.ru