MichaelHildebrand,
Any chance you are or know the person who can help me with a related question....
We use Azure MFA, we are at the final stage were we have risk based CA policies. Its great, MFA only prompts when Azure Security Graph feels its needed. However, we have a limited handful of tools like password vaults where we MUST MFA prompt every single time. No allowing 14 days, no using risk scores, MUST MUST MUST prompt for MFA.
Please tell me there is some obscure thing we can put in the app registration manifest or strange powershell command we can run against the enterprise app entry to make this happen. If there is not can we PLEASE have one? Its the only thing that stops us from dumping another MFA vendor we have.
If your not the right person would you kindly forward it on?