Name 3 Passwordless authentication methods for Microsoft 365.
FIDO2
Fast Identity Online
How does FIDO2authentication typically work?
USB device with security key (also Bluethooth or NFC)
Benefits of ______________
FIDO
What is the earliest version of WIndows that supports FIDO?
Windows 10, 1903
Problems fixed by ________
Windows Hello
What version of TPM is required to generate a key in software?
2.0
What two security groups are required to deploy Windows Hello for Business?
2. Windows Hello for Business Users
What does the initialism TPM stand for?
Trusted Platform Module
What is the primary purpose of a TPM?
Securely stores keys and measures the integrity of a system.
What is the weakness of TPM that attackers exploit?
The information in-transit between the CPU and TPM
What is the improvement provided by the Pluton architecture?
The TPM is emulated directly on the CPU keeping the information from being in-transit.
What are the two biggest benefits of SSPR?
2. No IT intervention
What allows you to control access to SaaS cloud applications based on the authenticating Azure AD tenant?
Tenant restrictions
What two high level steps are needed to enable tenant restrictions?
2. Configure proxy infrastructure
What addresses should clients be able to connect to in order to use tenant restrictions?
What are 3 prerequisites to using Tenant Restrictions?
Define Restrict-Access-To -Tenants in Tenant Restrictions.
A comma separated list of tenants that are accessible.
Define Restrict-Access-Context in Tenant Restrictions.
Value of a single directory ID, the tenant used for tenant restrictions.
Do Microsoft 365 applications support Tenant Restrictions?
If they,
Which of these authentication methods offers the highest level of security?
Microsoft Authenticator App
Which of the following is a security group used by Hybrid Windows Hello for Business when no Windows Server 2016 or later domain controllers are deployed?
KeyCredential Admins
Which is the recommended mode to start with when deploying Azure AD Password Protection?
Audit Mode