Migrate MFA server to Entra ID
Hi All,
Is it a must to use conditional access when migrating MFA server to Entra ID? My cu would like to save costs for not buying Entra ID P1/P2 if it is not a requirement.
“Configure Conditional Access policies if needed
If you use Conditional Access to determine when users are prompted for MFA, you shouldn’t need to change your policies.
If your federated domain(s) have SupportsMfa set to false, analyze your claims rules on the Microsoft Entra ID relying party trust and create Conditional Access policies that support the same security goals.
After creating Conditional Access policies to enforce the same controls as AD FS, you can back up and remove your claim rules customizations on the Microsoft Entra ID Relying Party.”
thanks.
Hi All, Is it a must to use conditional access when migrating MFA server to Entra ID? My cu would like to save costs for not buying Entra ID P1/P2 if it is not a requirement. Migrate to Microsoft Entra multifactor authentication with federations – Microsoft Entra ID | Microsoft Learn”Configure Conditional Access policies if neededIf you use Conditional Access to determine when users are prompted for MFA, you shouldn’t need to change your policies.If your federated domain(s) have SupportsMfa set to false, analyze your claims rules on the Microsoft Entra ID relying party trust and create Conditional Access policies that support the same security goals.After creating Conditional Access policies to enforce the same controls as AD FS, you can back up and remove your claim rules customizations on the Microsoft Entra ID Relying Party.” thanks. Read More