How to Enforce multi-factor authentication for B2B guest users ?

Jacobo Garrido 60 Reputation points
2023-06-15T07:54:05.52+00:00

HI Folks,

I would like some advice to force MFA or SMS to guest users in the tenant who already exists.

I see these links;

  1. https://learn.microsoft.com/es-mx/azure/active-directory/external-identities/b2b-tutorial-require-mfa
  2. https://learn.microsoft.com/en-us/azure/active-directory/conditional-access/howto-policy-guest-mfa

How are you recommendation? Conditional Access? Do you know other links more useful?

Many Thanks

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} votes

Accepted answer
  1. Sandeep G-MSFT 20,906 Reputation points Microsoft Employee Moderator
    2023-06-16T05:33:39.8733333+00:00

    @Jacobo Garrido

    Yes, configuring conditional access policy for all guest users would be better option for getting MFA forced for guest users.

    But, the main authentication for guest users will happen in there home tenant.

    However, post authentication when user is redirected to resource tenant, that is when user is prompted for MFA.

    There are no additional documents for this. You can follow the same steps which are mentioned in the article you mentioned.

    Let me now if you have any further questions.

    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.