Step-by-Step Guide to Using Passkeys in Microsoft 365

preview_player
Показать описание
Learn all about passkeys in Microsoft 365 and how they provide phishing-resistant multi-factor authentication! #Microsoft365 #Passkeys #mfa

🧑‍🏫 NEW Course - Discover Microsoft 365 and Get More Done

🆓 FREE Facebook Group
From security to productivity apps to getting the best value from your Microsoft 365 investment, join our Microsoft 365 Mastery Group

🆓 FREE Microsoft 365 Guide
Our FREE Guide - Discover 5 things in Microsoft 365 that will save your business time and money….. and one feature that increases your Cyber Security by 99.9%

💻 Want to Work Together?

😁 Follow on Socials
TikTok @bearded365guy
Instagram @bearded365guy

📽️ Video Chapters
00:00 Introduction
02:13 Passkey Analogy
03:15 Enable Passkeys in Admin Centre
05:04 iPhone Setting
06:02 Setup Passkey using Authenticator App
07:59 Setup Passkey using Web Browser
09:43 User Experience using Passkey
10:50 Create Conditional Access Policy
14:16 Final Thoughts
Рекомендации по теме
Комментарии
Автор

While I really like this in theory, unfortunately, because iOS only allows one app to offer PassKeys, this won't work for us. My firm has a BYOD policy, and plenty of our users use their own password solution (e.g. built-in, 1Password, etc) and forcing them to switch to using the MS Auth app is a no go. Hopefully Microsoft works towards allowing other non-MS Auth Passkeys in the near future.

JamesWimmer
Автор

This was an incredibly helpful video but left out a key detail. These passkey policies can conflict with Legacy MFA requirements which cause them to fail. I think you should pin a comment to clarify this because I spent weeks working off your info in the video and being stuck!

campbellmcternan
Автор

Something to point out is while in this video all security keys except for the two phone ones are blocked, this method does work with other security keys enabled. I suppose if you really want to, you can manually add your vendor's ID, but there is the question of how hard do you really want to make life on yourself? Just stepping up to everything is a security key for authentication is a big step forward in being more secure about how you do things. If you don't want to have to care about the vendor IDs attached to security keys to make things work, you don't have to.

ChaJ
Автор

thanks for this video Jonathan, just tried it on my 365 family subscription, and it works like a charm, need to discuss now with my client's CSO 🙂

christophecolnaghi-pierre
Автор

Fantastic video Jonathan! I really love your work and dedication. Clear, helpful, focused. Please never stop :)

mindenesvegyes
Автор

Simplicity and security is the 🗝

Thank you #bearded365guy !!! 🔥 🚀 💯

SonnyLearnsToRock
Автор

Amazing 🤩🤩🤩 now I need to secure my admin accounts 😅

fxylk
Автор

Thanks mate, learnt so much in this video

TeshyMusic
Автор

Hi Jonathan!. Congrats for this interesting video.
In my organization I have configured the synchronization between Microsoft 365 and the local Active Directory: every 90 days, the local Active Directory system forces us to change the password and consequently also the Microsoft 365 password, which is synchronized, changes. We all already use Microsoft Authenticator.
By enabling passkeys in Microsoft 365, what changes in this process? Do you have experience in this situation? Thanks for the support!

MaxScara
Автор

important side note: Your mobile device needs to run iOS version 17, or Android version 14, or later.

MrSam_Derp_Man
Автор

4:30 When you chose "Key restrictions policy" does that mean that the user only can use Microsoft Authenticator app for Passkeys? And what does "Restrict specific key" option do? And can you remove Android app if you only want to use iphone?

it-flex
Автор

Awesome video. Makes much more sense now how it works. My only question is how do you setup new users who have just started that CA policy will block them right? Or would it go straight to setup page?

StevenMcKenzie-
Автор

Thanks Jonathan, great video. You didn't cover one particular thing. What happens if you lose the device that has your Passkeys Stored? Phone gets dropped or stolen or left in a taxi after a wild night ?

networkn
Автор

iOS 18 update, iPhone settings to configure: Settings > General > Autofill & Passwords.

Jordan-kl
Автор

Thank Jonathan, always look forward to your new videos. I'm currently testing this is my environment and found that if I enable the Conditional Access policy to require the Phishing-Resistant MFA to log in, my Teams and Outlook are not able to sign in anymore. Have you heard about any development for getting mobile log ins into M365 apps working?

kevinbeutler
Автор

Fantastic video Jonathan! Once the new passkey account has been added to the Microsoft Authenticator app is it safe to assume the users original account can be removed from the authenticator app?

techgroupservices
Автор

Hi Johnathan, I've recently discovered your channel and love the content. Will the passkey keep de session alive indefinitely? Thanks in advance

jjrscorpion
Автор

Great video. I'm curious though, does this stop MIM attacks fully? What does it do to stop a user going to a dodgy login page which is relaying the QR image for them to authenticate?

benphillips
Автор

Hi Jonathan. Great tutorial! What if users switch phone? Can they switch the passkey also?

alexjacxsens
Автор

Microsoft now supports attestation for Microsoft Authenticator!

dikkev
welcome to shbcf.ru