997
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
this post was submitted on 29 Sep 2026
997 points (99.3% liked)
Technology
88356 readers
4020 users here now
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related news or articles.
- Be excellent to each other!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
- Check for duplicates before posting, duplicates may be removed
- Accounts 7 days and younger will have their posts automatically removed.
Approved Bots
founded 3 years ago
MODERATORS
EntraID is just a rebranding of Azure AD
Azure AD, the cloud version, still isn't as feature-complete (or possibly feature-bloated) as the original on-prem AD, which is a big reason large organizations won't switch away from it.
AD is a security nightmare. EntraID requires internet but at least allows zero trust with diverse configuration and importantly without storing or holding session tokens or passwords locally.
For my company, the only blocker is file share, which can be migrated. All our with integration use ldap and can be migrated to openid. Luckily we don't have more AD integrated stuff.
True, but so are all of the cloud platforms, so that doesn't really set it apart. Being legacy tech at this point without a lot of new code being added regularly, most of the weaknesses are pretty well understood.
Yeah I'm not convinced that Microsoft as an entity actually grasps the concept of zero trust. I think they likely have their own internal definition of it, just like they had their own definition of web standards back in the Internet Exploder days.
Look at what happened recently with Edge, where they claimed that storing user credentials in cleartext was "intended behavior":
https://www.bleepingcomputer.com/news/microsoft/microsoft-edge-to-stop-loading-cleartext-passwords-in-memory-on-startup/