Tag not monitored by Microsoft.
You cannot, not currently. Custom RBAC controls for Azure AD only supports certain actions, MFA reset is not one of them. For the time being, you need to use one of the built-in roles.
This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
How can a custom role be created for Azure MFA where the Admin will ONLY have permission to Unblock MFA for Users as their SOLE role without having the other permissions that come out of the box with "Privileged Authentication Administrator" role ?
Tag not monitored by Microsoft.
You cannot, not currently. Custom RBAC controls for Azure AD only supports certain actions, MFA reset is not one of them. For the time being, you need to use one of the built-in roles.