Skip to content

At least one Conditional Access policy is configured to block other legacy authentication

Why This Matters

Legacy authentication protocols like POP3, IMAP, and SMTP do not support modern security features such as multifactor authentication. Attackers frequently exploit these older protocols to bypass Conditional Access policies and gain unauthorized access. By ensuring at least one policy blocks legacy authentication, you close a common attack vector and strengthen your tenant's identity security posture.

What Aether365 Checks

This check verifies that your tenant has at least one active Conditional Access policy configured to block all legacy authentication. It appears in the Aether365 dashboard under the microsoft-365 service checks.

Microsoft references

Was this page helpful?