Skip to main content

πŸ’Ό 2.8 Ensure that a Custom Bad Password List is set to 'Enforce' for your Organization (Manual)

  • Contextual name: πŸ’Ό 2.8 Ensure that a Custom Bad Password List is set to 'Enforce' for your Organization (Manual)
  • ID: /frameworks/cis-azure-v3.0.0/02/08
  • Located in: πŸ’Ό 2 Identity

Description​

Microsoft Azure provides a Global Banned Password policy that applies to Azure administrative and normal user accounts. This is not applied to user accounts that are synced from an on-premise Active Directory unless Microsoft Entra ID Connect is used and you enable EnforceCloudPasswordPolicyForPasswordSyncedUsers. Please see the list in default values on the specifics of this policy. To further password security, it is recommended to further define a custom banned password policy.

Similar​

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags

Policies (1)​

PolicyLogic CountFlags
πŸ“ Microsoft Entra ID Custom Banned Password List is not enforced 🟒🟒 x3