Forum Discussion

StephanGee's avatar
StephanGee
Steel Contributor
Mar 24, 2023
Solved

Phase out text message / SMS for MFA (no hard break)

Hi everyone,   is it possible to phase out SMS in rings? We still have too many users using text message as their first auth method. We are "nudging" and we are sending campaings "how to change", ...
  • eliekarkafy's avatar
    eliekarkafy
    Mar 24, 2023

    StephanGee 

    you can run through this scenario .  

    1. Split the users into security groups , group phase 1 , group phase 2 , etc 
    2. Create an new authentication strength  and select only Password + Microsoft authenticator   

       


       

    3. Create a conditional access policy and target the apps you want and the group of phase 1 for example and in the grant option select Require authentication strength that you created 

       

      is that way you are asking the users to user Microsoft authenticator push notification or password code to validate their MFA . make sure to exclude from any other policy for MFA 

       

    Please click Mark as Best Response & Like if my post helped you to solve your issue. This will help others to find the correct solution easily.

Resources