-
Book Overview & Buying
-
Table Of Contents
-
Feedback & Rating

Microsoft Identity and Access Administrator SC-300 Exam Guide
By :

Entra ID Password Protection helps prevent users from creating weak or easily guessable passwords by enforcing a global banned password list and allowing administrators to define custom banned password lists. This feature is crucial in mitigating password spraying attacks, where attackers attempt to gain access by trying common passwords across many accounts.
We’ll start with the smart lockout settings.
The smart lockout settings determine how Entra ID handles failed login attempts. Lockout threshold is the number of times in a row a user can enter a bad password before getting locked out. By default, Lockout threshold is set to 10 in the Microsoft 365 Worldwide (sometimes referred to as Commercial or Public) cloud and Microsoft 365 China 21Vianet tenants, while it is set to 3 for Azure US Government customers.
Figure 5.29: Account lockout
Lockout duration...