Single Sign on for privileged access

Posted by Ok_Consideration7553@reddit | sysadmin | View on Reddit | 5 comments

Hi All, I would like to understand the best practice when using privileged access and single sign on. I understand it's likely better to not have this enable as it would increase the blast radius if compromised, but on the other side it allows for centralised identify management.

If using SSO you can also limit access via conditional access to certain privileged machines, this is something being considered.

Thanks!