5 ms·
If your IT department cared, they could disable the app notification MFA method in AAD and force you to either use passwordless or a TOTP code, both of which pr
by resfirestar 6y ago
If your IT department cared, they could disable the app notification MFA method in AAD and force you to either use passwordless or a TOTP code, both of which prevent you from blindly approving a sign-in you aren't involved in.
- Multicomp 6y agoI ha e to fight tooth and nail to get Toto where I work. The inertia of "but push is eaaasy" is strong.
- jiggawatts 6y agoI authenticate with 10 different Azure AD directories, of which I my company controls 1, and I personally control zero. Notably, Microsoft's consumer MFA, the type used to protect Hotmail and XBox accounts shows more information in the exact same mobile app! It's not that they don't have the capability, or don't know that it's important. Microsoft has explicitly chosen to never ever show additional information of any type for enterprise customers only. They care about the security of their own things, not you stuff, in other words.