last sync: 2024-Apr-22 16:32:55 UTC

Microsoft Managed Control 1308 - User Identification And Authentication | Remote Access - Separate Device | Regulatory Compliance - Identification and Authentication

Azure BuiltIn Policy definition

Source Azure Portal
Display name Microsoft Managed Control 1308 - User Identification And Authentication | Remote Access - Separate Device
Id 81817e1c-5347-48dd-965a-40159d008229
Version 1.0.1
Details on versioning
Category Regulatory Compliance
Microsoft Learn
Description Microsoft implements this Identification and Authentication control
Additional metadata Name/Id: ACF1308 / Microsoft Managed Control 1308
Category: Identification and Authentication
Title: User Identification And Authentication | Remote Access - Separate Device
Ownership: Customer, Microsoft
Description: The information system implements multifactor authentication for remote access to privileged and non-privileged accounts such that one of the factors is provided by a device separate from the system gaining access and the device meets approved PKI Class 3 certificates for smart cards.
Requirements: Azure uses multifactor authentication for Azure personnel by using eAuth Level 4 and FIPS 140-2 compliant Thales smart cards. All Microsoft users connect to the system via Jumpboxes, Debug servers, and Network Hop Boxes. This requires the user to present a certificate bound to the card along with a PIN.
Mode Indexed
Type Static
Preview False
Deprecated False
Effect Fixed
audit
RBAC role(s) none
Rule aliases none
Rule resource types IF (2)
Microsoft.Resources/subscriptions
Microsoft.Resources/subscriptions/resourceGroups
Compliance Not a Compliance control
Initiatives usage none
History
Date/Time (UTC ymd) (i) Change type Change detail
2022-04-01 20:29:14 change Patch (1.0.0 > 1.0.1)
JSON compare
compare mode: version left: version right:
JSON
api-version=2021-06-01
EPAC