logoalt Hacker News

debarshritoday at 3:02 PM7 repliesview on HN

Recently tried using Entra ID. There are 12 ways to enforce MFA, 20 days ways to disable users, 4 ways to authenticate users, Add conditional access stuff with 50 variables and templates etc.

You can customize the way you want. After configuring it, my colleagues could not log in. Thats one way to secure your organization.


Replies

mastaxtoday at 3:26 PM

Out of all the SSO login flows Microsoft has to have the buggiest. It’s the only one I can remember routinely having issues with. Why are there so many redirects? And why doesn’t the “remember me” checkbox ever work?

show 6 replies
yoyohello13today at 3:12 PM

That’s Microsoft. 1000s of features and none of them really work the way they are supposed to.

show 2 replies
joezydecotoday at 3:14 PM

There are extra ways to do that, but they're on a document deep in a Sharepoint directory that you can't access.

show 1 reply
Pxtltoday at 3:53 PM

The problem is modern MS doing three contradictory things at the same time:

- FB's move fast and break things. Constantly launching new libs.

- Linus's we do not break user space. Great commitment to backwards compatibility.

- Never deprecating dead products until they've been de facto abandoned for like decades.

This combination means every MS product is a labyrinth of overlapping APIs with no guidance as to which one is actually the good one. Some are abandoned garbage, some are brand new and incomplete, and some are both, and there's no way of knowing which are which even experts can mislead you.

show 3 replies
jjtheblunttoday at 3:14 PM

same experience for us, and then they email the living shit out of you about how your weekly entra id stats are good or bad, and you can not opt out of these emails.

show 1 reply
hedoratoday at 3:19 PM

Same here, except with Minecraft and XBox One.

I don’t understand how they have non-zero market share.

show 2 replies
DeathArrowtoday at 6:20 PM

I ripped Entra ID from one of our projects and replaced it with Keycloak.