Forum Discussion
WarreVlieghe
Jun 15, 2021Copper Contributor
MFA on Azure AD joined devices
Hi Intune gang, I'm having an issue with MFA prompts on Azure AD joined devices. Allow me to give a quick explanation of the situation: Our goal is to let multiple Azure users login to this...
- Jun 15, 2021Hi, If I am reading between the lines... You are enforcing MFA in the admin,microsoft.com portal
And you have a conditional access rule to make sure compliant devices dont get prompted for MFA
You should make sure you configure the mfa setting in the admin center to disabled and let conditional access do his job. (of course prevent legacy auth) You want to have some granularity
Jun 15, 2021
Hi, If I am reading between the lines... You are enforcing MFA in the admin,microsoft.com portal
And you have a conditional access rule to make sure compliant devices dont get prompted for MFA
You should make sure you configure the mfa setting in the admin center to disabled and let conditional access do his job. (of course prevent legacy auth) You want to have some granularity
And you have a conditional access rule to make sure compliant devices dont get prompted for MFA
You should make sure you configure the mfa setting in the admin center to disabled and let conditional access do his job. (of course prevent legacy auth) You want to have some granularity
WarreVlieghe
Jun 15, 2021Copper Contributor
Hi, thanks for the quick response!
That's right, MFA is enforced in the admin.microsoft.com portal.
So what you're saying is to disable MFA for the user and use conditional access instead to ensure MFA? Is there any difference in security between enabling MFA in the admin portal or using CA for MFA?
- Jun 15, 2021