Forum Discussion
Miike
Aug 17, 2023Brass Contributor
MFA claim expired - Breaking web apps
Hi All, Testing: - Passwordless (Phone Sign-in baseline) - Sign in Frequency (Shorter than tenant setting) - Desktops are hybrid, receiving their PRT but no not use WH4B - Tenant still has Re...
allytween
Sep 10, 2023Copper Contributor
I've been having the same issue as well. Hybrid - remember trusted devices turned off, persistent browsing turned on, SIF of 14 days. We did narrow down further that attempting to sign in with your 'Connected to Windows' account in the browser pop up gives a failure due to the 'expired' claim, but if you click the 'Use another account' button and then sign in with your account that way, you are able to sign in without any issue.
Notably, when I signed in to my computer using my yubikey, my account was no longer 'expired' for MFA on the device.
We can get around it currently by opening browsers in incognito or by signing out of the Edge browser and back in and choosing the 'Use another account' option. I'm glad I'm not the only person seeing this behaviour. I'll let you know if we get anything useful tomorrow!
Notably, when I signed in to my computer using my yubikey, my account was no longer 'expired' for MFA on the device.
We can get around it currently by opening browsers in incognito or by signing out of the Edge browser and back in and choosing the 'Use another account' option. I'm glad I'm not the only person seeing this behaviour. I'll let you know if we get anything useful tomorrow!