EIDSCA-AM10: EIDSCA AM10: Authentication Method - Microsoft Authenticator - Included users/groups to show geographic location in push and passwordless notifications
- Platform
- Entra ID / M365
- Category
- EIDSCA Baseline
- Severity
- Low
- Zero Trust pillar
- Identity (weight 2)
- Golden fixtures
- 3
- Branch coverage
- Observed: fixtures prove the verdicts they exercise
- Provenance
- baseline
What it checks
Entra ID security-configuration control (EIDSCA AM10): evaluates 'featureSettings.displayLocationInformationRequiredState.includeTarget.id' on the MicrosoftAuthenticator authentication method against the recommended secure value.
Recommended value
eq all_users
Remediation
Configure the MicrosoftAuthenticator authentication method so 'featureSettings.displayLocationInformationRequiredState.includeTarget.id' is set to all_users. (Entra ID security-configuration baseline, control EIDSCA AM10.)
Fixture-proven verdicts
Every verdict below is proven by a golden fixture in the module's gating test suite. This table derives from the last green run; it cannot be edited by hand.
| Scenario | Expected verdict |
|---|---|
| fail | FAIL |
| no-data | Not Assessed |
| pass | PASS |
Framework mappings
- EIDSCA
- AM10