<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Cookies on JanBakker.tech</title><link>https://janbakker.tech/tags/cookies/</link><description>Recent content in Cookies on JanBakker.tech</description><generator>Hugo</generator><language>en-US</language><copyright>Jan Bakker</copyright><lastBuildDate>Fri, 22 May 2020 13:40:49 +0000</lastBuildDate><atom:link href="https://janbakker.tech/tags/cookies/index.xml" rel="self" type="application/rss+xml"/><item><title>Sure, keep me signed in! And don't prompt for MFA!</title><link>https://janbakker.tech/sure-keep-me-signed-in-and-dont-prompt-for-mfa/</link><pubDate>Fri, 22 May 2020 13:40:49 +0000</pubDate><guid>https://janbakker.tech/sure-keep-me-signed-in-and-dont-prompt-for-mfa/</guid><description>&lt;p&gt;Today a short blog about MFA prompts, session lifetime, and cookies. This will give you an idea of how you can tune the end-user experience and where to configure these settings.&lt;/p&gt;&#10;&lt;p&gt;Session lifetime in Azure AD is often mistaken. When you start working with Azure AD, Conditional Access, and Multi-factor authentication, there are a couple of things you should know. The Azure AD defaults are pretty loose. When you leave every setting to default, the user experience is pretty good. Once you logged in to Office 365, your session can be re-used for &lt;strong&gt;90 days&lt;/strong&gt;. During that time, you are not prompted for your password, assuming that is it not changed over time.&lt;/p&gt;</description></item></channel></rss>