What Happened to Microsoft Managed Conditional Access Policies?

0
16
Asked By CuriousCat14 On

This morning, I discovered that two Microsoft Managed Conditional Access policies seem to have disappeared: one for requiring phishing-resistant multifactor authentication for admins and the other for blocking legacy authentication. It looks like the 'Microsoft Managed Policy Manager' service principal name may have deleted them, leading me to think this was a deliberate action by Microsoft. Has anyone else noticed this? Did I miss any notification about these policies being removed?

9 Answers

Answered By NewbieTechie23 On

I set up a new tenancy last week and noticed those policies weren't even there, which seems fishy.

Answered By SecureFuture12 On

This is a huge problem for us. We have some apps that rely on Conditional Access, and now they have no MFA protection. It's like they broke everything with this change. Really feels like an Easter glitch from Microsoft.

TechSkeptic01 -

Microsoft truly is the gift that keeps on giving!

Answered By IntriguedUser05 On

Do you think this has anything to do with the rollout of the Security Copilot agent?

Answered By OptimisticTechie44 On

I actually hope this means the end of those Microsoft Managed Policies! I've been wanting to remove them for a while now!

Answered By UserFriendly99 On

I noticed the same two policies gone, but thankfully, I hadn't assigned them to anyone since Microsoft set them up automatically.

HelpfulBuddy11 -

I appreciate that confirmation; it helps to know I'm not the only one.

Answered By PragmaticAdmin07 On

Yep, this looks like Microsoft doing some house cleaning. We've noticed similar activity across various tenants today. A good takeaway here is to never solely rely on Microsoft-managed policies for your controls. We treat them more like templates and recreate the crucial ones ourselves to prevent gaps like this. It's also wise to check your sign-in logs from the last 24 hours to see if anything slipped through.

Answered By AlertedUser58 On

Darktrace flagged the change for me last night at 5:37 PM CDT. At least these were default policies and not the custom ones we rely on.

Answered By ConcernedAdmin45 On

We experienced this too, and it’s insane that they made these changes without any notice whatsoever. I've opened a ticket about it.

Answered By TechWhiz88 On

I got an alert today that the 'Microsoft Managed Policy Manager' removed some services. Our security system detected the changes, so it seems legit from Microsoft's end.

ConcernedUser37 -

Thanks for confirming! I opened a support ticket since I have an agreement with them. I'll let you all know if I hear anything back.

AdminAlert22 -

We saw this happening across multiple tenants starting yesterday, so it's a widespread issue.

Related Questions

LEAVE A REPLY

Please enter your comment!
Please enter your name here

This site uses Akismet to reduce spam. Learn how your comment data is processed.