<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00007HajHrCAJOkta Classic EngineAuthenticationAnswered2025-10-11T09:00:47.000Z2021-11-15T16:38:09.000Z2021-11-16T07:33:57.000Z

MattE.19965 (Customer) asked a question.

How-to: Force a single user to get a push everytime.

I have a user that has an admin account that we would like to get an MFA push every login. We have policies in place for on network AD SSO that login without a 2fa if the computer passes conditional access policies (On Net, and Azure ad joined)


  • b5n6c (b5n6c)

    Hi Matt Evans,

     

    To ensure have a MFA push every login, you need to configure the Sign On policy accordingly.

    You can achieve this by creating a new sign on policy for the admin user, by adding the user to the newly created group or by directly adding the group, if it already exists.

    Also please note, this policy needs to be given the Priority 1 for it to have the impact on the admin user.

     

    For further configuration details, refer to the below snap:

     

    Image is not available
     

    Image is not available

    Expand Post
This question is closed.
Loading
How-to: Force a single user to get a push everytime.