Does push method support for Azure MFA authenitcator on ADFS 2019/2022

Anonymous
2024-03-06T07:36:33+00:00

Hi all,

Here is Patrick.

We are testing on ADFS 2019 with Azure MFA Authenticator.

We would like to use Azure MFA as primary authentication method. (i.e. Passwordless)

Is it possible to use push instead of TOTP in this case?

Thanks,
Patrick Fung

Windows Server Identity and access User logon and profiles

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question. To protect privacy, user profiles for migrated questions are anonymized.

0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Anonymous
    2024-03-07T05:47:20+00:00

    Hello PatrickFung,

    Thank you for posting in Microsoft Community forum.

    From the description above, I understand your question is related to Azure.

    Since there are no engineers dedicated to Azure in this forum. in order to be able to get a quick and effective handling of your issue, I recommend that you repost your question in the Q&A forum, where there will be a dedicated engineer to give you a professional and effective reply.

    Here is the link for Q&A forum.
    Questions - Microsoft Q&A

    Click the "Ask a Question" button in the upper right corner to post your question and select "Azure" tag and any other tags related to your productions.

    I hope the information above is helpful.

    If you have any question or concern, please feel free to let us know.

    Best Regards,
    Neuvi Jiang

    0 comments No comments
  2. Anonymous
    2025-01-10T07:30:22+00:00

    Hello

    Thanks for posting in Microsoft Community.

    Yes, Azure MFA Authenticator supports push verification (push) method, and it can be used with ADFS 2019/2022 as an authentication method. You are not forced to use TOTP.

    Azure MFA (Multi-Factor Authentication) provides multiple verification methods, including push notification (push), phone verification, SMS verification code and one-time password (TOTP). Push verification (that is, sending push notifications to user devices through Azure MFA app) is a very convenient passwordless authentication method, which allows users to complete verification by approving authentication requests on their devices without entering passwords or one-time verification codes.

    On ADFS 2019/2022, you can configure Azure MFA as the primary authentication method, and the following are the related support situations:

    Azure MFA Push Notification: Azure MFA can be authenticated through push notification. When a user tries to sign in, Azure MFA sends a push notification to the user's Authenticator app, and the user can click the notification to verify. This approach fully complies with the requirements of Passwordless Authentication.

    Azure MFA Configuration: When configuring Azure MFA in ADFS, you can choose different verification methods, including push notifications (by default). This way, you don't have to rely on the traditional time-based one-time password (TOTP) method.

    Azure AD and ADFS integration: Support for the Azure MFA push method is usually done through Azure AD, and in an ADFS environment, you need to ensure that Azure MFA has been properly integrated and the relevant configuration supports push notifications.

    I hope the above information is helpful to you.

    Best regards

    Runjie Zhai

    0 comments No comments