This article provides details on how to check for MFA Enforcement in Microsoft Entra.
- Microsoft Entra
- MFA Enforcement
Step 1
Confirm the account does not have MFA Enforced. Disable if so.
https://account.activedirectory.windowsazure.com/UserManagement/MultifactorVerification.aspx
Step 2
Check for any conditional access policies that are enforcing MFA, exclude from MFA if needed.
-
Navigate to Microsoft Entra admin center
-
Open user with a display name that starts with “SVC Okta Sync”
-
Open Sign-In logs
- Select a login failure line and inspect the Conditional Access tab:
- Once the Conditional Access policy has been identified, exclude the
SVC Okta Syncuser from the conditional access policy.
