Once MFA is enforced, will we still be able to Exclude MF Auth for a user in a non-prod environment?
Summary:
Once MFA is enforced, will we still be able to "Exclude Multifactor Authentication" for a user account in our non-production environments for purposes of testing and/or troubleshooting?
(originally posted in the Application Security category, where it received 14 views in <24 hours, but no responses… hoping it does better here)
Content (please ensure you mask any confidential information):
As administrators, we often need to log into our non-production environments as a user to test or troubleshoot an issue. Even though our users log in with Federated SSO (via Entra ID) just as they do in PROD, we have typically reset the user account password in the non-production environment so we may sign-in with their username and password.
Tagged:
0