Skip to content
English
  • There are no suggestions because the search field is empty.

Microsoft Authenticator: Display Location During Login Attempts [CHK-1153]

This check verifies if Microsoft Authenticator is set to display the location during a login attempt.

Rationale

Enabling location display during login attempts allows employees to identify and reject fraudulent login attempts more effectively.

Fix

An automated fix is available through Attic.

Manual steps:

  1. Navigate to Entra ID portal at https://entra.microsoft.com
  2. Go to Authentication methods
  3. Click on "Policies"
  4. Click on "Microsoft Authenticator"
  5. Under "Configure", expand "Show geographic location in push and passwordless notifications"
  6. Set this option to "Enabled"
  7. Click "Save"

Impact

Once the fix is implemented, the location of a sign-in attempt will be shown in the Microsoft Authenticator Multi-Factor Authentication (MFA) prompt, enhancing security by providing additional context for login attempts.

More Information