Description:

Modern authentication in Exchange Online provides you with a variety of ways to increase security in your organization with features like conditional access and multi-factor authentication (MFA).

Why:

Modern authentication in Exchange Online provides you a variety of ways to increase security in your organization with features like conditional access and multi-factor authentication (MFA).Basic authentication is the less secure method used by older client applications.Microsoft recommends that you turn off basic authentication for your organization.

Configured: This setting is in place.

Not Configured: This setting is not in place.

Scoring: Contributes up to 1 point to the Posture Recommendations score.

Category: General

Microsoft Licensing: Works with Basic licensing

Secure Score Impact: YES — Microsoft Secure Score control exo_oauth2clientprofileenabled.

Remediation in Augmentt: Configure directly in Augmentt (Configure tab)

Compliance Frameworks:

  • NIST CSF 2.0 — PR.DS-02

  • CIS Microsoft 365 Benchmark v6 (Level 1) — 6.5.1

  • CIS Microsoft 365 Benchmark v7 (Level 1) — 6.5.1

  • HIPAA Security Rule — 164.312(e)(2)(ii)

  • CMMC Level 2 — AC.L2-3.1.13, IA.L2-3.5.4

Microsoft documentation:


_KB status: already published as "Modern Authentication for Exchange/Outlook" — update the existing step in place._

_Source: Augmentt native check. Check ID enableexchangemodernauth (module 29)._

Sourced for this page:

  • Secure Score — Microsoft Secure Score control read by Augmentt from Microsoft Graph


Draft metadata — apply these as Stonly tags in the console, then delete this block. The Stonly API cannot set tags, so they are recorded here instead.
Tags: posture-check · compliance-audit · Exchange Online · General · M365 Basic · Secure Score · CIS M365 v6 L1 · CIS M365 v7 L1 · NIST CSF 2.0 · HIPAA · CMMC Level 2