Link to home
Start Free TrialLog in
Avatar of pramod1
pramod1Flag for United States of America

asked on

Multi factor authentication , azure AD office 365

We need to disable txt message for users who are using MFA and use app
Instead

Is it a good idea
Avatar of Jackie Man
Jackie Man
Flag of Hong Kong image

Yes. It is a good idea.

Why?

I recalled a demo in a security seminar a few years before that it is possible to input a few codes to the smartphone of a user and afterwards, all call log and received txt messages will be seen by the hacker online provided that the smartphone is connected to the Internet.

Besides, there are occasions which iPhone users will experience a delay in receiving txt message when iMessage platform has a problem.

Finally, in using Microsoft Authenticator app, your user can set a fingerprint authentication (Touch ID) before the app can be assessed and you cannot protect txt messsge if the phone screen  is unlocked.

User generated image
Avatar of pramod1

ASKER

How can a user set finger authentication before the app can be accessed
ASKER CERTIFIED SOLUTION
Avatar of Jackie Man
Jackie Man
Flag of Hong Kong image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of pramod1

ASKER

How can I enable MFA for all users
Avatar of pramod1

ASKER

Right now I am doing one by one
Unless you have MDM in place to push the app to the users, you have to do them one by one.
Avatar of pramod1

ASKER

We have air watch but how to enable from 365 portal right now all users have disabled MF A