Chapter 9: Planning, Implementing, and Administering Conditional Access and Azure Identity Protection
The previous chapter covered how to take modern authentication a step further by discussing how we can utilize passwordless authentication methods. This chapter will cover Conditional Access policies. This will include planning for and testing these policies to verify that they are working correctly and providing the proper controls. In addition, we will discuss Azure Active Directory (AD) Identity Protection and using sign-in and user risk conditions with policies.
In this chapter, we're going to cover the following main topics:
- Planning and implementing Conditional Access policies and controls
- Configuring Smart Lockout thresholds
- Implementing and managing a user risk policy
- Monitoring, investigating, and remediating elevated risky users