Privileged Azure Entra user is synced from on-premises AD

이 페이지는 아직 한국어로 제공되지 않으며 번역 작업 중입니다. 번역에 관한 질문이나 의견이 있으시면 언제든지 저희에게 연락해 주십시오.

Description

Synced accounts, especially those with high privilege levels, are often targeted by attackers and can be used to extend the impact of a breach. This check identifies highly privileged accounts synced to Microsoft Entra ID from on-premises Active Directory.

Remediation

  1. Review the access level of all synced accounts in your tenant.
  2. Exclude all possible privileged accounts from the sync process.
  3. Accounts that require both privileges to on-premises Active Directory and Microsoft Entra ID should be closely scrutinized.