Advertisement · 728 × 90

Posts by Samuel Eng

Microsoft Entra Verified ID: Issuance Architecture for IT Architects Microsoft Entra Verified ID architecture for IT architects: compare IDV-issued and self-issued credentials, Face Check, revocation, and trust design.

Who should issue the credential?

That choice shapes trust, revocation, and cost.

New post on Microsoft Entra Verified ID:
IDV-issued for portability
Org-issued for control
Face Check verifies the presenter

blog.samueleng.se/posts/2026-0...

#entra #verifiedid #verifiablecredentials

4 weeks ago 0 1 0 0
Blog | Samuel Eng A minimalistic blog built with Next.js, Tailwind, and Shadcn.

📣 New blog article ⬇️

blog.samueleng.se/posts/2025-1...

Conditional Access Back to Basics - What are "Cloud Apps" and why can't I find my app in the picker?

#conditionalaccess #entra #entraid

5 months ago 1 0 0 0
Blog | Samuel Eng A minimalistic blog built with Next.js, Tailwind, and Shadcn.

📣 New blog article

RDP connection to a Microsoft Entra–joined machine using Entra ID cloud account from macOS is not as straightforward as it seems.

blog.samueleng.se/posts/2025-0...

6 months ago 1 0 0 0

Block password additions is a massive security enhancement 👏

6 months ago 1 0 1 0

Got it 👍 I really appreciate your response

7 months ago 2 0 0 0

@danielbradley.bsky.social Really enjoyed the Entra Docs Tracker, great idea, and thank you! 👍 Any plans to open-source it? I’m thinking about other MS Docs repos I’d like to track.

7 months ago 0 0 0 0

Tagging additional Entra authorities for possible answers 🙂 @fabian.bader.cloud @dirkjanm.io

7 months ago 1 0 1 0

I see. My initial thought was that the attribute serves as a proxy indicator for the type of service principal (i.e., whether CA can be applied).

7 months ago 1 0 0 0

Does anyone know why the Conditional Access app picker applies the filter servicePrincipals?$filter=preferredSingleSignOnMode ne 'notSupported'? Is there any correlation with public vs. confidential clients or web vs. mobile clients? @merill.net @cbrhh.bsky.social @nathanmcnulty.com

7 months ago 1 0 2 0
Advertisement

Well deserved @nathanmcnulty.com! 👏🏆

11 months ago 1 0 1 0

I can confirm that I tried it in my lab tenant, and it is working as expected. 👍

1 year ago 1 0 0 0

👏👏I admire your dedication 😄

1 year ago 1 0 1 0

Out of curiosity, what did you base your announcement on? 🙂

1 year ago 0 0 1 0

Great news! Are there any updates on Learn or official announcements?

1 year ago 0 0 1 0

Ping @merill.net 😀

1 year ago 1 0 1 0
Post image

@merill.net Maester GitHub actions issue?

1 year ago 1 0 1 0
Preview
Samuel Eng on LinkedIn: #microsoft #microsoftsecurity #sse #sase #privateaccess #passkeys #eam… 📣 Highlighting two Microsoft Entra products working together - External Authentication Method (EAM) and SSE Private Access (ZTNA) An External Authentication…

📣 Highlighting two Microsoft Entra products working together - External Authentication Method (EAM) and SSE Private Access (ZTNA)
www.linkedin.com/posts/samuel...
#sse #sase #microsoft #entra #entraid

1 year ago 0 0 0 0

Great content! 👏

1 year ago 1 0 0 0

Excellent news! Is it too much to ask for the inclusion of Workload ID premium features for this app? 😂

1 year ago 1 0 0 0
Advertisement

💯agree. Since all network destinations and segments are represented by an app, the possibilities become limitless. Combine this with Entra ID Governance for self-service, approval, access review, and audit trails 🔥🔥

1 year ago 3 0 1 0
Preview
Search the Microsoft community on Bluesky and get verified! Bluesky account verification for Microsoft staff and MVPs.

Today is the day folks.

The new and updated Bluesky.ms is now live!

Go add yourself. I'll share a detailed step by step...

1 year ago 171 65 31 11
Preview
How to enable passkeys in Microsoft Authenticator for Microsoft Entra ID - Microsoft Entra ID Learn about how to enable passkeys in Microsoft Authenticator for Microsoft Entra ID.

Thank you for a great video 👍

Entra supports attenstation of the Microsoft Authenticator app (iOS/Android)

iOS: Uses the iOS App Attest service
Android: Uses the Play Integrity API

1 year ago 0 0 1 0

Once we have native built-in capabilities to remove or scramble the password in Entra, passwordless options for self-remediation of ID protection risks, universal passkey support et.c., everything will come together.

1 year ago 1 0 1 0
Post image

By the way, am I misunderstanding this? @merill.net

1 year ago 1 0 0 0

Got it, I appreciate you taking the time to respond.

1 year ago 1 0 0 0

A user has a passkey and MS auth app with push registered, and initiates a SSPR. The SSPR wizard suggests verification with app + push (and no other alternatives). Why not the most secure way, using the passkey? Any idea? @merill.net @jeftek.com @nathanmcnulty.com

1 year ago 2 0 2 0

Does @ mentioning work for Linkedin?

1 year ago 1 0 2 0

Would have loved BYOD/unmanaged device support in H1 2025 instead

1 year ago 2 0 0 0

MFA requirement for Register security information, using TAP for secure bootstrapping to phishing-resistant authentication methods such as passkeys. This is the way.

1 year ago 1 0 0 0
Advertisement
Preview
Microsoft Entra Private Access for on-prem users | Microsoft Community Hub Enable secure access to private apps that use Domain Controller for authentication  

I’m referring to this capability with a DC agent.

techcommunity.microsoft.com/blog/identit...

1 year ago 0 0 1 0