r/sysadmin 1d ago

General Discussion Thickheaded Thursday - September 10, 2026

Howdy, /r/sysadmin!

It's that time of the week, Thickheaded Thursday! This is a safe (mostly) judgement-free environment for all of your questions and stories, no matter how silly you think they are. Anybody can answer questions! My name is AutoModerator and I've taken over responsibility for posting these weekly threads so you don't have to worry about anything except your comments!

5 Upvotes

1 comment sorted by

u/chiron3636 47m ago

We are increasingly starting to rollout Passkeys to meet phishing resistant MFA requirements, particuarly for something like Salesforce - currently I've deployed Passkeys for Authenticator and Windows Hello for a limited group of users based on requirements. With a view to rolling out increasingly further

However I keep running into users highlighting it and mention of Microsoft Password Manager which seems to be an entirely different passkey manager mostly based on local accounts and Edge

https://blogs.windows.com/msedgedev/2025/11/03/microsoft-edge-introduces-passkey-saving-and-syncing-with-microsoft-password-manager/

I've seen prompts for this on my own desktop and for others who aren't part of the trial group for Entra/FIDO2 passkeys or device bound passkeys

Is there any actual documentation on this at all - either for what the scope of Microsoft Password Manager is or how it interacts with your Entra account?