The end of basic authentication, what's the impact for your organization?

Microsoft is ending support for basic authentication in Office 365 as of Oct. 1, 2022. Uhm, that's a week from the time of writing. That sounds scary, but Microsoft has been discontinuing basic authentication for new customers for quite some time, so chances are it's already disabled for your organization. In many organizations where there has been a printer/scanner/MFP for a long time, we encounter this or with very old software packages that need to be able to send emails. The consequence after Oct. 1 is that this will no longer function.

Why is Microsoft turning off basic authentication? To improve Office 365 security. Basic authentication is a common attack vector and relatively easy to abuse. Modern Authentication is much harder to abuse, and also provides additional services such as multi-factor authentication.

Important to know: Microsoft disables basic authentication for all protocols used in Exchange Online. The protocols themselves are NOT disabled and continue to work as usual, it's just the authentication method!

Microsoft is taking an aggressive approach to disabling basic authentication. The original plan was to start on Oct. 1 and take three months to turn it off for everyone. Microsoft has changed their plan, basic authentication for all tenants in Office 365 will be turned off in just one month!

As you can see, Analyst ICT is aware of these developments and we will help our customers in case this has not happened yet, in case you ended up on this page via Google? Below is how you can quickly find the settings yourself.

How do you verify that modern authentication is enabled in your Office 365 tenant?

In the Microsoft Online Portal (https://admin.microsoft.com), choose Settings | Org Settings | Modern Authentication. Top box with “Enable modern authentication for Outlook 2013 for Windows and later (recommended).”.

To check if there are clients in your organization using basic authentication, go to the Microsoft Azure Portal (https://portal.azure.com) and select the Azure AD tile. You can also navigate directly to the Azure AD portal at https://aad.portal.azure.com and scroll down to Sign-in logs under Monitoring.

Recent blogs

apple header
Blog
Apple 50 Years: 50 Years of Daring to Think Differently
This year, Apple celebrates its 50th anniversary. A milestone that cannot simply be overlooked. Because whether you are a fan or not: Apple has permanently changed the way we work, communicate, and create. At Analyst ICT, we are proud to be part of this ecosystem. As an Apple Technical Partner, we work daily with technology that is not only powerful but, above all, logical and pleasant to use. A different perspective on technology Apple has always distinguished itself by one simple conviction: technology should help people, not hinder them. No unnecessary complexity, but simplicity and ease of use. That aligns seamlessly...
browser password
Blog
Why saving passwords in your browser is not a good idea
The blog post below was created in response to a question during our engineering meeting. Every two weeks, we get together with all of our technical staff to discuss the latest developments in technology or with clients. Good client questions also arise during these meetings, such as this one. Time to do some research. Thank you, Wiebe! You've probably experienced this: you log in to a website, and your browser asks if it should remember your password. Convenient, fast, and you don't have to remember anything. However, there's a risk involved. In practice, we see that many security incidents start with something small. Like saving passwords…
Apple Business
Blog
Apple is taking a big step with Apple Business
Apple announced something special this week. Not a new device, but something that might be even more interesting for many organizations: Apple Business. A completely new platform with which Apple brings all its business services together in one environment. And frankly: this is a development that we at Analyst ICT are following with great interest. The problem: fragmented tools and unnecessary complexity Many organizations working with Apple will recognize the problem: Multiple portals (Apple Business Manager, Business Essentials, Connect) Different tools for management, branding, and support Additional costs for basic functionalities such as device management This leads to a lack of clarity and costs time. And…

A newsletter

Superlogic right?