Questions tagged [azure-mfa]
14 questions
1
vote
0 answers
Bypassing Network Policy Server with Azure AD Extension
I hope someone can help guide me here!
We have a RDS environment and introduced Azure MFA and built it successfully using the following guide here:…

cOzMaTiC
- 158
- 2
- 5
1
vote
2 answers
Lost OTP tokens - best practices?
We're in the process of deploying TOTP tokens to all staff across the organisation via Azure AD. We strongly encourage all staff to use Microsoft Authenticator as the default, and those with company issued mobile devices already have it pushed out…

ubercam
- 111
- 3
1
vote
1 answer
Azure AD B2C and aka.ms/mfasetup
I have an Azure AD tenant and I created an Azure AD B2C tenant for an app that I am building.
The "short link" for MFA setup is https://aka.ms/mfasetup but that allows me to configure MFA for my primary tenant?
Is there a URL for the MFA portal that…

Glenn Ferrie
- 181
- 1
- 7
1
vote
0 answers
Use Nps Server as MFA middleware
My company uses NPS Server and Microsoft Authenticator app to facilitate two factor authentication for RDP connections. We are Windows Server 2016 and Azure Active Directory.
Would it be possible to re-use this NPS infrastructure to authenticate…

Ako
- 111
- 1
1
vote
1 answer
RD gateway with Azure MFA
I followed this GUIDE https://docs.microsoft.com/en-ca/azure/active-directory/authentication/howto-mfa-nps-extension-rdg
And the issue is all my users are able to login without getting prompted for the MFA..
this is the logs I see on the NPS server…

SAM
- 11
- 1
- 2
1
vote
0 answers
Disable Azure/Office MFA on all users
We have created a new Office Tenant.
Now all users are required to use the Multi Factor Authentication.
How can I disable this policy?
I know that I can't disable it for gloabl admins.
That's fine - but I need to disable this for all users.
In the…

Twiebie
- 111
- 1
0
votes
1 answer
How to detect Basic authentication as fall back auth method - Exchange 2016 on prem + Azure MFA
we have configured Azure MFA in our Exchange on-prem 2016. Unfortunately, the MFA control can easily bypass by using an old email client (Outlook 2010 for example). This is a known issue and the upgrade is the natural path. until we walk that path,…

YaKs
- 31
- 3
0
votes
1 answer
How to change Microsoft Azure MFA from "enter code" to "approve request"
We have a M365 tenant with MFA enforced for all users.
We can use either text message (SMS) or Microsoft Authenticator app on smartphone with a Time Based code (6 digit TOTP code).
We would like for some users to have the MFA set to "approval"…

JFL
- 2,018
- 1
- 12
- 17
0
votes
2 answers
OTP before password with pam_radius and NPS
I have successfully configured pam_radius on a Ubuntu client so that users are asked for an OTP. The radius server is an NPS with Azure MFA extension. The OTP is checked against Azure.
It works well, but I'd rather not send the user credentials to…

francisaugusto
- 180
- 10
0
votes
1 answer
Azure Conditional Access - Exclude MFA for Specific Resource
Is there a way to exclude a conditional access policy from MFA when accessing a specific resource?
In this case it is when accessing a SQL managed instance. Everything else has to apply MFA.

RLBChrisBriant
- 595
- 1
- 7
- 22
0
votes
1 answer
Can I have a unique MFA for different Azure Subscriptions with one Tenant?
Currently I am looking at a configuration of a single Azure Tenant with multiple Subscriptions. Prod and non-Prod resources are separated by Subscriptions.
I am looking to understand how I could implement MFA via Microsoft Authenticator in such a…

Steven K7FAQ
- 277
- 2
- 3
- 13
0
votes
0 answers
When connecting to our LAN via an VPN, MS Outlook repeatedly prompts for passwords
For an email account that is in Exchange Online, if a user connects to our VPN, and then tries to open Outlook (the Windows app), they get prompted to authenticate with Exchange Online. But it fails, I believe due to the fact that it requires MFA,…

Kshaeta
- 1
- 1
0
votes
1 answer
Will IP changes trigger reauthentication for Microsoft Conditional Access MFA?
I am currently implementing Azure Conditional Access for a large group of users. Everything looks good, but we are getting complaints that people need to reauthenticate to often. We have configured the "Rememeber MFA" checkbox for 30 days. I would…

roebenk
- 1
-1
votes
1 answer
Windows Server 2016 multi-factor authentication for RDP with Azure AD
We want to require Multi-factor Authentication for RDP login (and local login) going forward on our Windows Server systems. Currently all of our Windows Server systems are Windows Server 2016. We are using Azure Active Directory free tier (but are…

A X
- 469
- 4
- 10
- 31