Configuring a sign-on policy console
Steps
-
Go to Authentication → MFA.
-
Click Add Policy.
-
Enter an appropriate Policy Name.
Example:
For example,
MFA-only
. -
In the Step Type list, select Multi-factor Authentication.
-
In MFA Policy, select a policy to specify which applications users can access and the ways in which they authenticate themselves.
For more information and additional configuration options, see Adding a multi-factor authentication step.
-
In None or Incompatible Methods:
Choose from:
-
Block. If the end user has no compatible MFA devices, then block the user from signing on.
-
Bypass. If the end user has no compatible MFA devices, then skip the MFA step.
-
-
Leave all the Required When options cleared so that this policy always triggers.
-
Click Save.