Conditional access with Authentication strength

Jeeda Al-Haroun 10 Reputation points
2024-01-26T13:08:20.9133333+00:00

Hello, I have created a Conditional Access policy with the following settings: Target Resources: All cloud apps Conditions: Client apps (Configure: Yes) and they're all selected. Grant: Require authentication strength And I have created a custom authentication strength that asks for the password and a push notification to the Microsoft Authenticator App. However, the issue is that when the policy is enabled, users are automatically signed out of their Microsoft Apps (Teams, Outlook) And when trying to sign is they get the error message attached. Does anyone know why and how can I fix this please? User's image

Microsoft Authenticator
Microsoft Authenticator
A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation.
7,216 questions
0 comments No comments
{count} vote

1 answer

Sort by: Most helpful
  1. Aleksandr Nazaryan 5 Reputation points
    2024-03-12T15:09:07.2666667+00:00

    I managed to fix this after couble of days of fighting, by revoking MFA sessions and requestiiong re-register MFA in Entra for the problematic userUser's image

    1 person found this answer helpful.
    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.