Forum Discussion

Lee Parker's avatar
Lee Parker
Copper Contributor
Jan 13, 2022

MFA and Security Defaults

Hello All, 

 

I am struggling to find a clear answer, so I am hoping you can assist.

 

When Security Default is turned on in 365, does this have any impact on 'Enabling', 'Enforcing' or 'Disabling' MFA for any of the users?

 

I have read that 'Security Defaults' requires users to have MFA:

  • Requiring users to do multi-factor authentication when necessary.

But if I change a user to 'Enforced' or even 'Disabled', does this have any impact to the user, or does 'Security Defaults' override these settings?

 

  • Security defaults is just another method for enforcing MFA, it's actually based on Conditional Access policies (but you have no way of customizing those). It does not change any of the "old-style" per-user MFA controls, those will still be in effect.
    • Lee Parker's avatar
      Lee Parker
      Copper Contributor
      Hello, I am still unclear if the Per User controls have any effect with the Security Defaults enabled.
      It would make sense that the per-user MFA would be greyed out if the Security Defaults overrides the MFA.
      • VasilMichev's avatar
        VasilMichev
        MVP
        They are still in effect, unless you specifically decide to disable them.

Resources