MFA选项 [英] Option with MFA
问题描述
这里我理解:
Here what I understand:
有一个2 MFA选项与Office 365:MFA in clound(通过Office 365)或Azure,以及MFA服务器。
There a 2 MFA Option with Office 365: MFA in clound(via Office 365 or Azure, and a MFA Server.
https://docs.microsoft.com/en-us/azure/active-directory/authentication/concept-mfa-whichversion
有没有办法强制用户群(或带有itune设备的案例用户)使用Microsft Authenticator as
second factor 并强制另一个用户群使用Voici / SMS as
second factor?
Is there a way to force a groupe of user( or case user with itune device) to use Microsft Authenticator as second factor and force another groupe of user to use Voici/SMS as second factor?
谢谢
Sebastien
Sebastien
推荐答案
Hi Bistro40,
Hi Bistro40,
您可以在技术上使用MFA服务器标签来实现类似的功能,但这是不可取的。此外,MFA服务器将是
已弃用,所以这不是一个好的长期术语解决方案。
You can technically use MFA Server tags to achieve something like this but it is not advisable. Also, MFA Server will be deprecated in the not too distant future, so it is not a good long-term solution.
对于云MFA,这是不可能的,除非您将ADFS与O365结合使用,您可以在其中指定要在"Office 365身份平台"上使用的身份验证方法派对信任但该方法有很多限制。当使用
ADFS时,如果选择一个方法,用户将无法使用回退方法,如果他们使用错误的方法,他们将获得多个MFA提示,直到他们选择正确的方法。
For cloud MFA this is not possible unless you use ADFS in combination with O365, where you can specify the authentication method to use on the 'Office 365 Identity Platform' relying party trust but there are a lot of restrictions for that method. When using ADFS, users won't be able to have fallback methods when one method is selected, and if they use the wrong method they'll receive multiple MFA prompts until they select the right method.
这篇关于MFA选项的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持IT屋!