Activate conditional access strategies to block legacy authentication 99%

Loïc 85 Reputation points
2024-01-03T14:30:01.06+00:00

Hi everyone,

To raise my identity secure score, I tried to "Activate conditional access strategies to block legacy authentication" but in the guide it says that I have to exclude at least one account :

User's image

So eventually I obtain 99% success rate but is there a way to have 100% ?

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
24,635 questions
0 comments No comments
{count} votes

Accepted answer
  1. Domooney-MSFT 2,606 Reputation points Microsoft Employee Moderator
    2024-01-03T16:13:18.53+00:00

    Hi Loïc,

    Thank you for posting your query on Microsoft Q&A!

    You can safely ignore this message "Exclude at least one account to prevent yourself from being locked out. If you don't exclude any account, you won't be able to create this policy."

    Since you are targetting only legacy clients then you will not be blocked from logging into the Entra ID portal, so in the event you need to add exclusions at a later time, you can simply modify the Conditional Access policy.

    I will make a request to remove that message from our document.

    Let me know if you have any further queries, I would be happy to help!

    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

    1 person found this answer helpful.
    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.