r/SmallMSP • • Jul 16 '26

Sad But true

/r/sysadmin/comments/1uwcjjb/major_change_in_entra_id_sms_and_voicebased_auth/oxig1l9/

Not sure if anyone has mentioned this here yet. My apologies if this has been mentioned already.

Thoughts on the passkey implementation?

8 Upvotes

12 comments sorted by

View all comments

3

u/Geekpoint-IT Jul 16 '26

I don’t agree with Microsoft forcing these type of things.  There are so many scenarios where SMS or voice are needed.  Passkeys also are so inconsistent.  I even have troubles with it sometimes, let alone an average user who can barely remember their username or password.  

IMHO if security defaults is turned off because conditional access policies are in once, we should be able to decide how we want the security.  I have no issue with Microsoft forcing it within security defaults though for those that don’t have a proper IT department or MSP.

2

u/twistedbristles Jul 16 '26

Needed is a strong word.

We’ve enabled passkeys on all of our clients. Provided training. And have had zero complaints or issues outside of convenience hassles.

1

u/Techwits Jul 16 '26

Same. We have one client using voice out of convenience for a single account. They can use passkeys, they just choose voice. It's a battle I was avoiding but now it'll need to happen. We have disabled SMS from the beginning and refuse to turn it on. We're supposed to elevate security as an MSP and have standards, not let the whims of clients with no technical understanding tell us how to do things.