Azure AD
مباشرالهوية والوصولموصّل Azure AD — للقراءة فقط، بدون وكيل
Audits your Azure AD (Microsoft Entra ID) directory — MFA coverage and Conditional Access, legacy-auth blocking, privileged-role sprawl (Global Admins, admins without MFA, PIM), over-privileged app identities, guests and external collaboration, Identity Protection risk (at-risk / compromised users), group hygiene, and audit-log retention. Identity-infrastructure posture, read-only — distinct from the Microsoft 365 file/content scan.
ما الذي نفحصه
- User, group, and role directory metadata — MFA-registration state, guest vs member, sign-in recency, and privileged-role assignments (never credentials)
- Conditional Access, external-collaboration and authorization policies, Identity Protection risk state, app (service-principal) role holdings, and audit-log configuration
مراقبة بصلاحية القراءة فقط — لا يتغيّر شيء في بيانات Azure AD الخاصة بك ما لم تُفعّل المعالجة التلقائية وتمنح وصول الكتابة بشكل منفصل.
النتائج الأمنية
يتم تشغيل 22 قاعدة كشف في كل فحص لـ Azure AD. تأتي كل نتيجة مع شرح بلغة واضحة، والأدلة التي تدعمها، وخطوات المعالجة.
- CRITICALOver permission
Excessive number of Global Administrators
- CRITICALOver permission
Privileged admin account without MFA
- CRITICALMisconfig
User with a confirmed account compromise
- HIGHMisconfig
Users without multi-factor authentication registered
- HIGHMisconfig
User has MFA explicitly disabled
- HIGHMisconfig
Legacy (basic) authentication is still allowed
- HIGHMisconfig
No Conditional Access policy requires MFA for all users
- HIGHOver permission
Excessive number of Privileged Role Administrators
- HIGHAI agent
Service principal holds an owner-equivalent directory role
- HIGHExternal access
Guest (external) user holds a privileged role
- HIGHMisconfig
User flagged at-risk by Identity Protection
- MEDIUMMisconfig
No enforced Conditional Access policy exists
- MEDIUMMisconfig
Privileged Identity Management is not enabled
- MEDIUMExternal access
Guests are allowed to invite other guests
- MEDIUMExternal access
Dynamic group silently includes guest members
- MEDIUMMisconfig
Microsoft 365 group has public visibility
- MEDIUMMisconfig
Audit-log retention is shorter than 30 days
- MEDIUMMisconfig
Vendor AI-training data-contribution posture
- LOWStale access
Guest account inactive for over 90 days
- LOWMisconfig
Group has no owners
- LOWMisconfig
No diagnostic settings export the logs
- LOWMisconfig
Sign-in logs are unavailable
كيفية ربط Azure AD
الخطوة 1
سجّل حسابًا أو سجّل الدخول إلى 8200.dev
الخطوة 2
انتقل إلى Connectors ← Azure AD
الخطوة 3
انقر على Connect وامنح التفويض عبر شاشة الموافقة الخاصة بـ Azure AD
الخطوة 4
يقوم 8200.dev بالفحص تلقائيًا — تظهر النتائج خلال دقائق
اربط مصدرك الأول في دقائق — مجاناً، للقراءة فقط، دون الحاجة إلى مكالمة مبيعات.