{"id":1707,"date":"2015-02-20T20:43:09","date_gmt":"2015-02-20T19:43:09","guid":{"rendered":"https:\/\/sccmfaq.wordpress.com\/?p=1707"},"modified":"2015-02-20T20:43:09","modified_gmt":"2015-02-20T19:43:09","slug":"azure-active-directory-multi-factor-authentication-through-smart-phone-app","status":"publish","type":"post","link":"https:\/\/blog.hosebei.ch\/?p=1707","title":{"rendered":"Azure Active Directory &#8211; Multi Factor Authentication through SmartPhone App"},"content":{"rendered":"<p>Hi there,<\/p>\n<p>today I would like to show, how End-Users can configure their Multi Factor Authentication for Windows Azure Logons. This might be important for them, because they could have different choices on how they would get contacted.<br \/>\nFirst they can login to their Azure Active Directory Profile, which is available as Users from your On-Premise Active Directory, but also for Users which resides only in the cloud. The URL of the Profile is the following:<br \/>\nhttps:\/\/account.activedirectory.windowsazure.com\/profile\/default.aspx<br \/>\nThe following Webpage appears:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2015\/02\/azuremfa01.png\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-medium wp-image-1708\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2015\/02\/azuremfa01.png?w=300\" alt=\"Azure AD Profile\" width=\"300\" height=\"157\" srcset=\"https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa01.png 908w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa01-300x157.png 300w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa01-768x402.png 768w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><!--more--><br \/>\nIn a DirSync Scenario you can have configured the Password Write-Back to your Active Directory if the Passwort Reset Functionality is needed. But for the purpose of this topic, we need to click on &#8220;Additional security verification&#8221;. You will find the following options to use a additional verification:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2015\/02\/azuremfa02.png\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-1709\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2015\/02\/azuremfa02.png\" alt=\"MFA options\" width=\"240\" height=\"94\" \/><\/a><br \/>\nWe will choose the option to &#8220;Notify me through app&#8221;, which is the most laziest, in my point of view. When you have selected this option, you have to activate the check Box beyond &#8220;Mobile App&#8221; and click on configure:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2015\/02\/azuremfa03.png\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-medium wp-image-1710\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2015\/02\/azuremfa03.png?w=300\" alt=\"Configure\" width=\"300\" height=\"273\" srcset=\"https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa03.png 737w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa03-300x273.png 300w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><br \/>\nYou will then get the information, what to do, to use the app as an authentication method:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2015\/02\/azuremfa04.png\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-medium wp-image-1711\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2015\/02\/azuremfa04.png?w=300\" alt=\"Configure Mobile App\" width=\"300\" height=\"247\" srcset=\"https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa04.png 677w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa04-300x247.png 300w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><br \/>\nYou will also find the three Application Links which you can add to a SCCM Application, this application you can then deploy to your mobile Device Users:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2015\/02\/azuremfa05.png\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-medium wp-image-1713\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2015\/02\/azuremfa05.png?w=300\" alt=\"SCCM Application\" width=\"300\" height=\"165\" srcset=\"https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa05.png 1194w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa05-300x165.png 300w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa05-1024x563.png 1024w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa05-768x423.png 768w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><br \/>\nWhen you have installed the app on your favorite device, you can then add your account. When this is done, you can click &#8220;Save&#8221; on the Webpage, and your configured App will be checked for a verification, if you have allowed the Push Notification for the MFA, you get notified and can answer:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2015\/02\/azuremfa06.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-medium wp-image-1716\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2015\/02\/azuremfa06.png?w=169\" alt=\"AzureMFA06\" width=\"169\" height=\"300\" srcset=\"https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa06.png 720w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa06-169x300.png 169w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa06-576x1024.png 576w\" sizes=\"auto, (max-width: 169px) 100vw, 169px\" \/><\/a> <a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2015\/02\/azuremfa07.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-medium wp-image-1717\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2015\/02\/azuremfa07.png?w=169\" alt=\"AzureMFA07\" width=\"169\" height=\"300\" srcset=\"https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa07.png 720w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa07-169x300.png 169w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2015\/02\/azuremfa07-576x1024.png 576w\" sizes=\"auto, (max-width: 169px) 100vw, 169px\" \/><\/a><br \/>\nThat&#8217;s it, lazy MFA is coming \ud83d\ude09<br \/>\nMartin<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Hi there, today I would like to show, how End-Users can configure their Multi Factor Authentication for Windows Azure Logons. This might be important for them, because they could have different choices on how they would get contacted. First they can login to their Azure Active Directory Profile, which is available as Users from your [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[24],"tags":[],"class_list":["post-1707","post","type-post","status-publish","format-standard","hentry","category-mdm"],"_links":{"self":[{"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=\/wp\/v2\/posts\/1707","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1707"}],"version-history":[{"count":0,"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=\/wp\/v2\/posts\/1707\/revisions"}],"wp:attachment":[{"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1707"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1707"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1707"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}