Skip to main content

User should be blocked from using legacy authentication

Important

The Conditional Access What If API is currently in public preview and is subject to change. Maester tests written using this API may need to be updated as the API moves towards General Availability.

This check is only executed if you define the tag CAWhatIf

Description

Checks if the tenant has at least one conditional access policy that actually blocks legacy authentication using CA WhatIf.

Block legacy authentication with Microsoft Entra Conditional Access

How to fix

Create a conditional access policy that blocks legacy authentication for all users.

Learn more