
gm78r (gm78r) asked a question.
We have internal URLs in our organization and users authenticate to internal URLs with LDAP( AD user accounts) How do I force MFA whenever an AD user logs in to URL without using Okta browser plugin. The AD users have already been imported to Okta.

MFA can be configured at application level. When you are configuring the policy, make sure that the rule says "Anywhere".
Rule -
When a User is located... Use the drop-down menu to enforce where the user will be challenged for authentication:
For more details visit https://help.okta.com/en/prod/Content/Topics/Security/MFA.htm
but without using Okta browser plugin. ??
That depends on your application whether it supports SAML or not. Applications that do not support SAML or a direct form POST to a URL required Okta browser plugin.