Integrating On premise application with Microsoft AZure MFA using NPS Extension

%3CLINGO-SUB%20id%3D%22lingo-sub-1383215%22%20slang%3D%22en-US%22%3EIntegrating%20On%20premise%20application%20with%20Microsoft%20AZure%20MFA%20using%20NPS%20Extension%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1383215%22%20slang%3D%22en-US%22%3E%3CP%3EHi%2C%26nbsp%3B%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EDomain%20Users%20in%20my%20organization%20are%20able%20to%20access%20on%20-%20premise%20applications%20by%20getting%20authenticated%20to%20Microsoft%20MFA%20through%20NPS%20server%2C%20but%20it%20uses%20PAP%20as%20an%20authentication%20type.%3C%2FP%3E%3CP%3ENow%20as%20per%20security%20reasons%20we%20need%20to%20configure%20the%20same%20to%20MS%20CHAP%20V2%20authentication%20type%20in%20all%20the%20Network%20policies%2C%20in%20order%20to%20achieve%20this%20do%20we%20need%20to%20enable%20both%20MS%20CHAP%20V2%20and%20PAP%20in%20authentication%20type%3F%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EPlease%20provide%20valid%20clarification....%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-1383215%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EAzure%20MFA%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E
Highlighted
Occasional Visitor

Hi, 

 

Domain Users in my organization are able to access on - premise applications by getting authenticated to Microsoft MFA through NPS server, but it uses PAP as an authentication type.

Now as per security reasons we need to configure the same to MS CHAP V2 authentication type in all the Network policies, in order to achieve this do we need to enable both MS CHAP V2 and PAP in authentication type?

 

Please provide valid clarification....