Azure_IAM_4

Ensure that Allow users to remember multi - factor authentication on devices they trust is Disabled

Description

Do not allow users to remember multi-factor authentication on devices.

Remediation

Perform the following in the Azure Console:

  1. Go to Azure Active Directory
  2. Go to Users and group
  3. Go to All Users
  4. Click on Multi-Factor Authentication button on the top bar
  5. Click on service settings
  6. Disable Allow users to remember multi-factor authentication on devices
    they trust

References:

  1. https://docs.microsoft.com/en-us/azure/multi-factor-authentication/multi-factor-authentication-whats-next#remember-multi-factor-authentication-for-devices-that-users-trust

Service

IAM

Severity

High

Compliance

Mapping

We are now live on AWS Marketplace.
The integrated view of your cloud infrastructure is now easier than ever!