MFA sms authentication for External users does not work

Paweł Konkel [FibriTech] 20 Reputation points
2024-09-30T09:15:54.84+00:00

Hi,

Our company would like to implement MFA for external B2B users. For simplicity, external users should only authenticate via sms.

I found information that the authentication strength policy can only be applied to external users who authenticate with Microsoft Entra ID.

https://learn.microsoft.com/en-us/entra/identity/conditional-access/howto-conditional-access-policy-authentication-strength-external

I then tried to create a policy requiring only multi-factor authentication without a strength policy and create a procedure for employees to configure sms-only authentication without Microsoft Authenticator, but when external users try to access a Sharepoint resource, they are told to configure Microsoft Authenticator and sms authentication does not work.Why is this?

How can I set up MFA access for external users by configuring sms authentication only?

Thanks for your help

SharePoint
SharePoint
A group of Microsoft Products and technologies used for sharing and managing content, knowledge, and applications.
10,665 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,623 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Xyza Xue_MSFT 24,331 Reputation points Microsoft Vendor
    2024-10-01T07:52:20.6+00:00

    Hi @Paweł Konkel [FibriTech] ,

    It is not possible to set up MFA access for external users by configuring SMS authentication only. The allowed authentication methods for MFA fulfillment when completed in an external user's home tenant include text message as a second factor, voice call, Microsoft Authenticator push notification, Microsoft Authenticator phone sign-in, OATH software token, OATH hardware token, FIDO2 security key, Windows Hello for Business, and Certificate-based Authentication.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.