How to clean up inactive guest users in Azure

preview_player
Показать описание
In this How-to video I'm going to cover creating a dynamic group and access reviews. This video is centered around keeping your environment secure. Often times you'll receive request to create guest accounts but the requester will never inform IT when that guest is no longer needed. This causes major security risk to an organization. The strategy covered in this video provides you with a way to eliminate that risk.

My mission is to help guide you through your cloud journey! My motto is always learning

Our goal is to get you from scholar to consultant and from consultant to expert.

See you next time!

#AzureLearning #Azure #CloudSecurity #CloudTraining #Office365 #LearnCloud #CloudScholars #alwaysgrowing #knowledgeispower #cybersecurity
Рекомендации по теме
Комментарии
Автор

This is the best Channel about IT security. Watching from the UK

Ddesigns
Автор

The governance identify license is $7 per user per month. Very expensive license! Again. Thank you for this wonderful video!

daye
Автор

Great video.
Unfortunately, Microsoft now requires a Identity Governance license for this feature

Thiagoofficial
Автор

Thanks for the videos
At last part of video, we need to add description because that will be notified to the user with the email content. otherwise, guest users feel it is phishing email and avoid clicking it.
If they need access, they will retain the access. If they no longer need it then they will ignore it

khotesagar
Автор

Great content. What if you don’t create the dynamic group and just choose the guest only in scope?

daye
Автор

Great video!
Is the access review disables the inactive guest user?
Can with access review just disable the user and keep it to tenant if on the future you want to enable it again? There are only two options available on the "Action to apply..." settings tab.
Thanks

dimpro
Автор

Great video - how do I do this for all users not just guest? I’m assuming I don’t add the usertype = guest condition?

Cheers!! From UK

josephjoestar
Автор

Great video, how do you target a specific company with the rules? Also from the U.K. 🙌💯

andrewg.t
Автор

Hello Cloud Scholars, very helpful video. Thanks for sharing! I am trying to create the policy: With this policy, if a guest user has not signed in for 180 days, the user will receive an access review notification that must be completed within 5 days, if the user does not respond, account will be <deleted>

My settings:
Frequency: Monthly
Duration: 5 Days
If reviewers don't respond: Take recommendations
Enable reviewer decision helpers
No sign-in within 30 days (I can't disable this option)

So when I click on the result, I am seeing users which has last sign in date only 2 months ago and recommended options is deny because of Last signed in more than 30 days ago (2/27/2023).

Could you please tell me if this policy will work correctly or there is a bug? Thank you.

alidogancolak
Автор

👍Nice video!
Your screen is blurry, hard to read though.

drifter
Автор

Hello Cloud Scholars,

Suppose I selected inactive Guest account for 30 days and If the reviewer does not respond and I select remove access and block sign-in for 30 days and remove it from tenant, then does it keep the guest account for another 30 days and delete the guest account or does it immediately delete the guest account from tenant.

sanjaychauhan