Beginning January 2024, Microsoft Entra ID will support device-bound passkeys stored on computers and mobile devices as an authentication method in preview, in addition to the existing support for FIDO2 security keys. This enables your users to perform phishing-resistant authentication using the devices that they already have.
Microsoft will be expanding the existing FIDO2 authentication methods policy and end user experiences to support this preview release. If your organization uses FIDO2 authentication or Windows Hello for Business, please continue reading to learn more and prepare for the upcoming changes.
- Text displayed to users today:
- “Sign in with Windows Hello or security key”
- “Sign in with a security key”
- Text displayed to users in January 2024:
- “Face, fingerprint, PIN, or security key”
- “Signing in with a passkey”
