![Mastering Identity and Access Management with Microsoft Azure](https://wfqqreader-1252317822.image.myqcloud.com/cover/884/36698884/b_36698884.jpg)
Using standard security monitoring
In this section, we will configure and simulate some typical events that get reported in the Azure AD Monitoring section.
First, we configure a Password protection feature, Custom smart lockout. We set the value to 10 incorrect logins:
![](https://epubservercos.yuewen.com/1A2C27/19470381808825406/epubprivate/OEBPS/Images/59936ce8-6a98-47e5-ad66-d4dc4295bd17.png?sign=1739301283-hO4kk328EsnDw5AXXBoBQrgM7l9y6w3Z-0-40db53e0c583658697c4c1c8ed43996d)
You should receive the following message if you provide a wrong password 10 times:
![](https://epubservercos.yuewen.com/1A2C27/19470381808825406/epubprivate/OEBPS/Images/2195dd87-018b-498e-b26e-cb7b1f1990ed.png?sign=1739301283-bX5N7Gd2viCFNkoSpHNBrJUu1LlGCGs2-0-2e298f9b9f85afe6e0146acbef9a593b)
You can see the activity under Monitoring | Sign-In:
![](https://epubservercos.yuewen.com/1A2C27/19470381808825406/epubprivate/OEBPS/Images/6590a08a-0d8a-4591-b98d-95b87db3152f.png?sign=1739301283-AUMaiQ8UGa9BuBWPPfDlRHfypQtIFr3k-0-375199292304cc3f8bca42da4650622e)
You can also test Sign-ins from multiple geographies with simulation software such as CyberGhost (http://www.cyberghostvpn.com/en_us). Another option would be to use an Azure Virtual Machine.
Log in with an account between geographic regions that are far apart, such as Europe and Asia. This requires a remote machine from your location and in a different time zone, with logons as close together as possible:
- Log in to https://myapps.microsoft.com as Don.Hall@domain.onmicrosoft.com from your local PC
- Log in to https://myapps.microsoft.com as Don.Hall@domain.onmicrosoft.com on a machine in a different time zone than your original PC
To configure users with an anomalous sign-in activity, you can use the Tor browser:
- Utilize an anonymous browsing tool such as Tor
- Download the secure Tor browser from https://www.torproject.org/download/download-easy.html.en
Open the Tor browser, go to https://myapps.microsoft.com, and log in as Don.Hall@domain.onmicrosoft.com. Your user account will be locked.
The following result is expected in security monitoring:
![](https://epubservercos.yuewen.com/1A2C27/19470381808825406/epubprivate/OEBPS/Images/50041110-ac0f-4e34-b18b-a4e6cbd65ef7.png?sign=1739301283-mGNeWSsnPrq5bGYF46EhpBJBVCb8NAn1-0-c13a08f105f7614e4855c8eec75b7266)
Now that we have had a short journey through the security-monitoring options, we will integrate our Windows 10 client into Azure AD.