-
Book Overview & Buying
-
Table Of Contents
-
Feedback & Rating

Microsoft Identity and Access Administrator SC-300 Exam Guide
By :

Implementing CBA enhances security by allowing users to authenticate using X.509 certificates issued by a trusted PKI. This method is particularly effective in providing phishing-resistant, passwordless authentication. Administrators must ensure that their environment meets specific prerequisites to implement CBA, such as having a configured PKI with at least one certification authority (CA) and any intermediate CAs uploaded to Microsoft Entra ID.
Enabling CBA in your Microsoft 365 tenant requires several steps:
Over these next sections, we’ll look at enabling CBA with hybrid identity and an on-premises enterprise PKI solution. We’ll be using Active Directory Certificate Services.
The first step is to upload your PKI system’s CA root certificate (and any subordinate...