Microsoft just made a long-requested improvement: you can now manage application policies for Entra ID applications directly in the portal. Things like certificate and secret age restrictions - previously the domain of the Graph API only - are now exposed in a friendly UI as seen here in many of wonderful blog posts.That’s good news. But before you start tightening lifespans on certificates, let me share a gotcha I haven’t seen mentioned anywhere else yet.The Error You’ll SeeWhen you s...| thetolkienblackguy
Check out this article via web browser: A public bug report for Entra ID application policies I’ve spent the last couple of nights trying out this new feature in Entra ID: application policies. I’ve already written two (1,2) blog posts about it, but just when I thought I was done, here’s another finding that really blows my mind. Hear me out. What’s the issue? According to the docs: “Sometimes, exceptions need… Read More »A public bug report for Entra ID application policies Th...| JanBakker.tech
Check out this article via web browser: No, your NHIs can’t use passwords either! For human identities, going passwordless is becoming pretty standard these days. It looks like passkeys are getting some good traction, and more and more organisations are moving towards passwordless solutions for their workforce. But with the rise of NHI (non-human identities), it’s time to fight the battle of passwords in this corner of the field.… Read More »No, your NHIs can’t use passwords either...| JanBakker.tech