← Back to projects

Microsoft Entra ID · Short case

Blocking legacy authentication

Summary

I reviewed the use of legacy authentication protocols and prepared a policy to block them. Before activation, I checked its impact with Report-only mode and sign-in logs.

My role
Investigation, policy creation, validation and activation.
Scope
Organisation access.
Validation
Report-only mode and Sign-in Log review.
Status
Active.

What I did

I created a policy to block Legacy Authentication and first kept it in Report-only mode. I reviewed sign-ins to check whether any account or service still depended on these protocols.

The validation showed no impact, so I activated the policy with the planned scope.

Result

Legacy authentication flows were blocked and the policy remains active. The change strengthened modern access controls without affecting the sign-ins that were in use.