SSPR Security Questions

Timo - The Admiral 1 Reputation point
2021-10-30T08:48:28.013+00:00

Hi,

We are searching for a way validating security questions by admin when a users calls via phone to identify him. After this identification we will reset the Password in a 3rd party application which has own user DB. Helpdesk should type in the answer to question on behalf and will only get false or true. Possible via Graph API? Or other recommendations?

Regards Timo

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. T. Kujala 8,766 Reputation points
    2021-10-31T11:01:15.627+00:00
    1 person found this answer helpful.
    0 comments No comments

  2. Timo - The Admiral 1 Reputation point
    2021-10-31T12:29:26.467+00:00

    Hi @T. Kujala ,

    i know that in Azure AD portal answers are not visible for admins. I'm not sure about the questions a users had chosen. But my requested way would not need to make answers visible for admin.

    An admin just types the answer of question which the calling user gave him. Admin will only see if answer is correct or not after sending the answer via an unknown way. More or less the answer is given on behalf of the user.

    Regards Timo

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.