
GregA.85464 (Customer) asked a question.
I have this installed on my AD server so I can test it out before installing on my RDP server. Everything works fine for MFA auth.
My question is though, once I install the agent on my user's RDP server, is it all or nothing? Meaning, once I install it, can it only prompt users in one of my groups? SO it will not prompt for MFA until I add the user to the RDP MFA group I created for example?

Hi, @GregA.85464 (Customer)
Thank you for posting on our Community page!
I have done some research and I found the articles below which better explain Microsoft RDP MFA integration:
Hope this helps!
Thank you for reaching out to our Community and have a great day!
_____________________________________________________________________________
The Okta Community Catalysts Program is now live. Collect online badges when you participate in the Okta Help Center Questions community. Learn more here.
_____________________________________________________________________________
Laura, thank you for the reply! So if I am reading this right, I think there is an emphasis on the "Before installing the Okta credential provider for Windows, you must"...meaning if I configured this group and created the sign on policy without MFA checked after I installed the RDP agent on the server, that I will need to uninstall it from the server and reinstall, right?