Skip to content

Commit 0cec8f5

Browse files
committed
added groups only
1 parent 63b00f2 commit 0cec8f5

File tree

3 files changed

+4
-8
lines changed

3 files changed

+4
-8
lines changed

articles/active-directory/authentication/how-to-certificate-based-authentication.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -5,7 +5,7 @@ description: Topic that shows how to configure Azure AD certificate-based authen
55
ms.service: active-directory
66
ms.subservice: authentication
77
ms.topic: how-to
8-
ms.date: 10/10/2022
8+
ms.date: 12/07/2022
99

1010
ms.author: justinha
1111
author: vimrang

articles/active-directory/authentication/howto-authentication-passwordless-security-key.md

Lines changed: 3 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ services: active-directory
66
ms.service: active-directory
77
ms.subservice: authentication
88
ms.topic: how-to
9-
ms.date: 11/12/2021
9+
ms.date: 12/07/2022
1010

1111
ms.author: justinha
1212
author: justinha
@@ -47,9 +47,7 @@ Registration features for passwordless authentication methods rely on the combin
4747

4848
1. Sign in to the [Azure portal](https://portal.azure.com).
4949
1. Browse to **Azure Active Directory** > **Security** > **Authentication methods** > **Authentication method policy**.
50-
1. Under the method **FIDO2 Security Key**, choose the following options:
51-
1. **Enable** - Yes or No
52-
1. **Target** - All users or Select users
50+
1. Under the method **FIDO2 Security Key**, click **All users**, or click **Add groups** to select specific groups.
5351
1. **Save** the configuration.
5452

5553
>[!NOTE]
@@ -58,12 +56,10 @@ Registration features for passwordless authentication methods rely on the combin
5856

5957
### FIDO Security Key optional settings
6058

61-
There are some optional settings for managing security keys per tenant.
59+
There are some optional settings on the **Configure** tab to help manage how security keys can be used for sign-in.
6260

6361
![Screenshot of FIDO2 security key options](media/howto-authentication-passwordless-security-key/optional-settings.png)
6462

65-
**General**
66-
6763
- **Allow self-service set up** should remain set to **Yes**. If set to no, your users will not be able to register a FIDO key through the MySecurityInfo portal, even if enabled by Authentication Methods policy.
6864
- **Enforce attestation** setting to **Yes** requires the FIDO security key metadata to be published and verified with the FIDO Alliance Metadata Service, and also pass Microsoft’s additional set of validation testing. For more information, see [What is a Microsoft-compatible security key?](/windows/security/identity-protection/hello-for-business/microsoft-compatible-security-key)
6965

-1.13 KB
Loading

0 commit comments

Comments
 (0)