Skip to main content

💼 6.2.3 Ensure that an exclusionary device code flow policy is considered (Manual)

  • ID: /frameworks/cis-azure-v4.0.0/06/02/03

Description

Conditional Access Policies can be used to prevent the Device code authentication flow. Device code flow should be permitted only for users that regularly perform duties that explicitly require the use of Device Code to authenticate, such as utilizing Azure with PowerShell.

Similar

  • Sections
    • /frameworks/cis-azure-v3.0.0/02/02/03

Similar Sections (Take Policies From)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS Azure v3.0.0 → 💼 2.2.3 Ensure that an exclusionary Device code flow policy is considered (Manual)1no data

Similar Sections (Give Policies To)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS Azure v3.0.0 → 💼 2.2.3 Ensure that an exclusionary Device code flow policy is considered (Manual)1no data

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance

Policies (1)

PolicyLogic CountFlagsCompliance
🛡️ Microsoft Entra ID Device Code Authentication Flow is not restricted🟢⚪🟢 x2, ⚪ x1no data