Is this possible
We have our domain federated with ADFS, this is for our O365 users. So when logging on to O365 home realm discovery pushes us to ADFS for authentication.
Now I want to use SAML/Azure MFA against an enterprise application which we have created in Azure. When our enterprise application redirects users to Azure for authentication, rather than being authenticated with Azure MFA we enter our email address and again home realm discovery pushes us to ADFS.
How can I have it that O365 is auth with ADFS, but our enterprise application uses Azure MFA and doesn't redirect to ADFS via HRD? Do I need conditional access policy set against enterprise application?