ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Tenant disabling of Basic Auth cause OAUTH iPhone to break

    IT Discussion
    microsoft o365 exchange online basic authentication
    5
    8
    873
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • JaredBuschJ
      JaredBusch
      last edited by

      MS just disabled Basic Auth this morning on the tenant of one of my clients. Did not know and did not care, because zero things at this site use basic auth. All the users are on the current O365 version of the installed apps.

      But some of the iPhone users have been spammed with the pop up to enter their Exchange password.

      This pop up actually is useless on iOS, because you have to sign in to MS services with the "log in" method by going into settings (repeatedly cancelling the password pop up box) and into mail -> accounts -> then tap re-enter password to get the auth webpage.

      My phone, and all the other users were correctly setup with OAUTH style "log in" for their email in the Mail app on iOS.

      Disabling of Basic Auth should have done nothing.

      jt1001001J 1 2 Replies Last reply Reply Quote 1
      • jt1001001J
        jt1001001 @JaredBusch
        last edited by

        @JaredBusch Thanks for heads up will keep an eye on this. Most of our iPhone users are using the Outlook IOS app but we have a couple who use the native client.

        1 Reply Last reply Reply Quote 0
        • DashrenderD
          Dashrender
          last edited by

          is it possible to know which method was used when signing in with the native client?

          bbigfordB JaredBuschJ 3 Replies Last reply Reply Quote 0
          • bbigfordB
            bbigford @Dashrender
            last edited by bbigford

            @Dashrender said in Tenant disabling of Basic Auth cause OAUTH iPhone to break:

            is it possible to know which method was used when signing in with the native client?

            Technically, I think you could dig that out of the Azure activity logs but I haven't really looked into it much (although that question keeps surfacing). But it's not something you'd be able to see on the client side since it doesn't determine the auth, it's just prompted at the time the request is generated so by re-entering the password in settings it'll generate a modern auth request if basic was used prior.

            DashrenderD 1 Reply Last reply Reply Quote 0
            • bbigfordB
              bbigford @Dashrender
              last edited by

              @Dashrender said in Tenant disabling of Basic Auth cause OAUTH iPhone to break:

              is it possible to know which method was used when signing in with the native client?

              I found a workbook that can be used to uncover apps/users using legacy auth. Although that was more helpful before October since now it's more reactive. https://learn.microsoft.com/en-us/azure/active-directory/reports-monitoring/workbook-legacy authentication

              1 Reply Last reply Reply Quote 0
              • DashrenderD
                Dashrender @bbigford
                last edited by

                @bbigford said in Tenant disabling of Basic Auth cause OAUTH iPhone to break:

                @Dashrender said in Tenant disabling of Basic Auth cause OAUTH iPhone to break:

                is it possible to know which method was used when signing in with the native client?

                Technically, I think you could dig that out of the Azure activity logs but I haven't really looked into it much (although that question keeps surfacing). But it's not something you'd be able to see on the client side since it doesn't determine the auth, it's just prompted at the time the request is generated so by re-entering the password in settings it'll generate a modern auth request if basic was used prior.

                an answer to this question could have been handy so IT could inform those people to re-authenticate to prevent this issue.. oh well.

                1 Reply Last reply Reply Quote 0
                • JaredBuschJ
                  JaredBusch @Dashrender
                  last edited by

                  @Dashrender said in Tenant disabling of Basic Auth cause OAUTH iPhone to break:

                  is it possible to know which method was used when signing in with the native client?

                  I signed in via the oauth web page, so basic auth should have been in solved in nothing.

                  This is also not the first account hit. So now, I expect something similar as MS moved through the tenants I have accounts on.

                  1 Reply Last reply Reply Quote 1
                  • 1
                    1337 @JaredBusch
                    last edited by 1337

                    @JaredBusch said in Tenant disabling of Basic Auth cause OAUTH iPhone to break:

                    Disabling of Basic Auth should have done nothing.

                    If the security setting are changed on an account it makes sense to force users to reauthenticate. It might even be best practice.

                    I think it works the same on other providers.

                    But there should be some better mechanism regarding authentication in ios and android.

                    1 Reply Last reply Reply Quote 0
                    • 1 / 1
                    • First post
                      Last post