

Under this scheme, IT pros issue a limited-time passcode to a user via the Azure Portal. Lastly, Temporary Access Pass in Azure Active Directory, currently at the preview stage, will be arriving this summer. Microsoft also described Microsoft Authenticator earlier this week as being capable of generating complex passwords that users don't need to recall, for those who stick with passwords. iOS users will start to see this capability later this month and the feature will be available on Android afterwards. Now that limitation has been removed and you can have as many as you want. When we first introduced passwordless sign-in for Azure AD (work or school accounts), Microsoft Authenticator could only support one passwordless account at a time.

The app is now getting the ability to support multiple passwordless accounts. Microsoft Authenticator users can also dispense with using passwords, if wanted. Microsoft Authenticator is an application for Android and iOS mobile devices that enables single sign-on to applications. There was some Microsoft Authenticator news announced, too. The Cloud Trust model is said to make deployments of Windows Hello for Business "simpler." It also avoids the "syncing of public keys between Azure AD and on-premises domain controllers (DCs) for users to access on-premises resources and applications." The Cloud Trust approach is seen as a time-to-use enhancement over PKI, as described in this Microsoft document. Windows Hello for Business Cloud Trust is a deployment model that uses Azure Active Directory Kerberos instead of public key infrastructure (PKI). Windows Hello for Business is Microsoft's biometric authentication scheme that adds a second factor for user authentications, which is typically a face scan, or a PIN can be used. Passwordless support will be coming to Windows 10, too, at some point.Īdditionally, Microsoft is now previewing Windows Hello for Business Cloud Trust for use with the Windows 11 version 21H2 and Windows 10 version 21H2 OSes. Passwordless support for "Windows 365, Azure Virtual Desktop and Virtual Desktop Infrastructure" is now available at the preview stage for Windows 11 participants in the Windows Insider testing program, the announcement noted. Passwordless improvements are coming to Microsoft's desktop-as-a-service offerings, Windows Hello for Business and Microsoft Authenticator app, among others. Microsoft signaled its embrace of the FIDO passwordless standards and described product advancements in its Thursday announcement. Operating system platform makers Apple, Google and Microsoft on Thursday all embraced the FIDO passwordless approach in a joint announcement.
