John Flores
John Flores
There is a legacy and modern option for MAPI as mentioned in the article you linked to... https://docs.microsoft.com/exchange/clients-and-mobile-in-exchange-online/deprecation-of-basic-authentication-exchange-online#pop-imap-and-smtp-auth #please-close
You can use known trusted IP locations as something to help in some respects. https://docs.microsoft.com/azure/active-directory/conditional-access/location-condition#trusted-locations There are no other configurable policy settings. #please-close
Email out to PG contacts.
#label:"awaiting-product-team-response"
@dwarfered They must have SSPR to do secure password change. They must have MFA to perform MFA that is the intent of that statement.
#label:"awaiting-product-team-response"
The Identity Protection PMs are reviewing this
@starbuck3000 Thanks for your feedback. Yes, this policy would impact anything that calls [Microsoft Azure Management](https://learn.microsoft.com/azure/active-directory/conditional-access/concept-conditional-access-cloud-apps#microsoft-azure-management) including a lot of the underlying APIs that other portals rely on.
#reassign:@MicrosoftGuyJFlo