20. November 2023

The conventional way to access server or cloud services is to use a password. However, this makes access quite difficult for the user and also reduces security. To avoid these problems,Microsoft has developed the Password-Less strategy. This completely dispenses with passwords. It makes it possible to access Active Directory and Azure without entering them.

The use of passwords jeopardizes security

Passwords pose a high security risk. While working, a window repeatedly pops up asking the user to enter their authentication key. Phishing software recreates these input fields and transmits the codes to the attackers. This gives them unrestricted access to all data. Most hacker attacks use this strategy to penetrate other people’s systems. If passwords are no longer used, the data is therefore much better protected.

Windows Hello: Welcome to a world without passwords!

Microsoft has introduced a new strategy to solve the problems associated with the use of passwords:

Windows Hello completely dispenses with passwords, thereby increasing security and ease of use. The user only has to authenticate once and then gains access to Azure and Active Directory. Authentication also does not use passwords that are valid for the entire account. On the one hand, it is possible to use a device-specific PIN. This improves security, as the access code is only valid for one physical device. In order to penetrate the system, the attacker would therefore have to be in possession of both the PIN and the corresponding device.

Greater ease of use thanks to fewer passwords

In addition, biometric authentication is possible. The use of fingerprint, Iris or face recognition is very secure and extremely convenient.

Entering passwords also reduces the ease of use. If you have to type in the key again and again, you lose a lot of time. What’s more, you should use a different password for each service. This makes it very difficult to remember all the letter and number combinations. For this reason, most users find the use of passwords very annoying.

Step-by-step implementation of the password-less strategy

The password-less strategy is implemented step by step. To do this, you must first set up Windows Hello. Authentication with Windows Hello can initially take place in parallel with the use of conventional passwords. After that, the prompts to enter them must be removed so that the user no longer enters or changes their authentication key . They no longer even need to know it. In the final step, access via password is then completely abolished.These services are offered by New Media Service GmbH in the area of password-less strategy


