Introduction #
Modern authentication in Exchange Online enables authentication features like multi-factor authentication (MFA). When you enable modern authentication in Exchange Online, Windows-based Outlook clients that support modern authentication (Outlook 2013 or later) use modern authentication to connect to Exchange Online mailboxes.
We recommend that you enable Modern authentication on Exchange Online.
License Requirement #
Any Exchange Online plan
User Impact #
Medium
Users may be prompted to re-authenticate in all applications which connect to Exchange Online such as Outlook.
Admin Portal Reference #
This setting must be switched on via PowerShell. The following cmdlet is run on the tenants Exchange Online.
Set-OrganizationConfig -OAuth2ClientProfileEnabled $true
If Action is set to Notify #
We report the setting is compliant if Set-OrganizationConfig -OAuth2ClientProfileEnabled is set to $true.
We report the setting is non-compliant if Set-OrganizationConfig -OAuth2ClientProfileEnabled is set to $false.
If Action is set to Enforce #
We report the setting is compliant if Set-OrganizationConfig -OAuth2ClientProfileEnabled is set to $true.
We report the setting is compliant-fixed if Set-OrganizationConfig -OAuth2ClientProfileEnabled was set to $false but we changed the setting to $true.