阻止个人用户访问SSPR流程 [英] Block individual user access to SSPR process

查看:79
本文介绍了阻止个人用户访问SSPR流程的处理方法,对大家解决问题具有一定的参考价值,需要的朋友们下面随着小编来一起学习吧!

问题描述

概述:

Office 365的许可租户,因此使用随此提供的免费SSPR版本.

Licensed tenant of Office 365 so using the version of Free SSPR given with that.

没有使用特定的组来允许SSPR,我们允许Azure AD中的所有人.

Have not used a specific group to allow SSPR we allow everyone in the Azure AD.

用户已成功注册SSPR,然后我们让他们离开.已经删除了Azure配置文件中的身份验证信息,但是我们当然看不到或清除与UPN相关的安全问题.

User had registered successfully for SSPR and then we let them go. Have already removed the Authentication Info in the Azure Profile but we of course cannot see or clear Security Questions associated with the UPN.

已经更改了密码,已将邮箱转换为共享和删除的Office许可证.

Already changed password, have converted mailbox to shared and removed Office license.

问题:

用户是否仍然可以使用SSPR并回答安全问题并重置与UPN相关的密码?

Is it still possible for the user to use SSPR and answer security questions and reset the password associated with the UPN?

如果我们不使用特定的小组,而是将SSPR分配给所有人,那么当他们离开公司时,是否还有个人可以清除安全问题或阻止SSPR工作流的人?

Is there anyway we can clear the security questions or block SSPR workflow for an individual when they leave the company if we did not use a specific group but assigned SSPR to all?

推荐答案

在此在这种情况下,您可以从门户网站强制重置用户密码,并使用PowerShell设置身份验证数据.参考: 通过PowerShell设置和读取身份验证数据.另外,您可以选择创建组并应用SSPR策略以限制特定组的用户使用SSPR功能.参考: 密码管理常见问题

In this kind of scenario, you can reset the user password forcefully from the portal and set the authentication data with PowerShell. Refer: Set and read the authentication data through PowerShell. Also, you have an option of creating a group and apply a SSPR policy to limit the users of particular groups to use SSPR feature. Refer: Password management frequently asked questions

----------- -------------------------------------------------- -------------------------

如果此答案有帮助,请单击标记为答案" "或赞".要提供有关您的论坛体验的其他反馈,请单击 此处


这篇关于阻止个人用户访问SSPR流程的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持IT屋!

查看全文
登录 关闭
扫码关注1秒登录
发送“验证码”获取 | 15天全站免登陆