mirror of
https://github.com/KelvinTegelaar/CIPP.git
synced 2026-04-25 08:16:01 +03:00
[GH-ISSUE #289] Feature Request: Exclude Azure AD Sync accounts from the Per-User MFA Standard #151
Labels
No labels
API
Feature
NotABug
NotABug
Planned
Sponsor Priority
Sponsor Priority
bug
documentation
duplicate
enhancement
needs more info
no-activity
no-priority
not-assigned
pull-request
react-conversion
react-conversion
roadmap
security
stale
unconfirmed-by-user
unconfirmed-by-user
wontfix
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
starred/CIPP#151
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @kfear27 on GitHub (Nov 25, 2021).
Original GitHub issue: https://github.com/KelvinTegelaar/CIPP/issues/289
Originally assigned to: @KelvinTegelaar on GitHub.
When applying the standard called 'Enable per-user MFA for all users' this enables MFA for the 'On-Premises Directory Synchronization Service Account'
This in turn breaks the sync as you would need to configure MFA for that account.
For said account this is a system managed account, passwords and configuration are unknown.
From a standard Azure AD subscription you are unable to exclude certain IP addresses from MFA too.
Is there a best practice around this setup which I am unaware of?
Thanks
@github-actions[bot] commented on GitHub (Nov 25, 2021):
Thank you for creating a feature request! feature requests are prioritized by our direct contributors. Your current priority is set to "No Priority". If you are a sponsor you can request an upgrade of priority, If you want this feature to be integrated you can always do this yourself by checking out our contributions guide at https://kelvintegelaar.github.io/CIPP/GettingStarted/Contributions.html. Contributors to the CIPP project reserve the right to close feature requests at will.
If your feature request is not picked up in 2 week by a contributor it will be closed.
If you'd like this feature request to be assigned to you, please comment "I would like to work on this please!".
@KelvinTegelaar commented on GitHub (Nov 28, 2021):
added in dev, we exclude the accounts starting with Sync_.