Message D: MC883192
Microsoft Entra ID now supports FIDO2 provisioning via API, allowing organizations to pre-provision security keys (passkeys) for users. These new APIs can simplify user onboarding and provide seamless phishing-resistant authentication on day one for employees.
[When this will happen:]
Public Preview: We will begin rolling out mid-September 2024 and expect to complete by late September 2024.
[How this will affect your organization:]
Admins can onboard employees with admin provisioning of FIDO2 security keys (passkeys) on behalf of users, providing secure and seamless authentication from day one. While admins can still deploy security keys in their default configuration to their users or allow users to bring their own security keys which requires self-service registration by a user, these APIs allow keys to be pre-provisioned for users, so users have an easier experience on first use.
Passkey authentication method is enabled through Authentication method policy.
For more information on how to use this feature, see Enable passkeys (FIDO2) for your organization.
[What you need to do to prepare:]
This rollout will happen automatically with no admin action required.
Source: Microsoft
Latest Posts
- Microsoft Teams: First run experience and prompting users to release previous reservations [MC1106876]
- (Updated) Microsoft Teams: Share Teams apps and agents from their profile or the Teams side panel [MC1037767]
- Power Platform admin center – Manage agent security with enhanced admin controls [MC1106717]
- Dynamics 365 Contact Center – Use Microsoft Teams Phone within Contact Center [MC1106584]