question

LukeLim95131 avatar image
0 Votes"
LukeLim95131 asked kllin edited

Hybrid Modern Authentication for Exchange Hybrid

I am using Exchange hybrid agent and configuring modern hybrid.

I know that hybrid modern authentication is not supported.

I do know what is modern authentication but what is hybrid modern authentication?

Can users migrated to Exchange Online (EXO) use MFA conditional access policy and for me to configure block legacy authentication conditional access policy?
I know users still on on-premise Exchange (EXCH) will not have modern authentication.

Or does it mean that all users whether they are on EXO or EXCH cannot use modern authentication?

office-exchange-online-itprooffice-exchange-hybrid-itpro
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

1 Answer

kllin avatar image
0 Votes"
kllin answered kllin edited

Hi, @LukeLim95131

In this article you can check in details the Hybrid Modern Authentication.
https://docs.microsoft.com/en-us/microsoft-365/enterprise/hybrid-modern-auth-overview?view=o365-worldwide
You cannot block the Conditional Access to legacy authentication because the Conditional Access works only on Modern Authentication, or in this case Hybrid Modern Authentication.
When you enable the Hybrid Modern Authentication, its for all your Exchange Organization, not to one or other user.
After enabled, the Hybrid Modern Authentication depends on clients and protocols support to work, like Outlook 2013 and MAPI over HTTP. So, if the user have the minimum requirements to use HMA and the HMA its enabled in your environment it works, otherwise, the user still using legacy authentication regardless of whether the user uses EXO or EXCH.

Hope this helps.

(If the reply was helpful please don't forget to upvote and/or accept as answer, thank you)

Regards,

Kllin Nunes


5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.