mirror of
https://github.com/KelvinTegelaar/CIPP.git
synced 2026-04-25 08:16:01 +03:00
[GH-ISSUE #899] FEATURE REQUEST: Excluded MFA Users #459
Labels
No labels
API
Feature
NotABug
NotABug
Planned
Sponsor Priority
Sponsor Priority
bug
documentation
duplicate
enhancement
needs more info
no-activity
no-priority
not-assigned
pull-request
react-conversion
react-conversion
roadmap
security
stale
unconfirmed-by-user
unconfirmed-by-user
wontfix
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
starred/CIPP#459
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @bbeamts on GitHub (Apr 25, 2022).
Original GitHub issue: https://github.com/KelvinTegelaar/CIPP/issues/899
Is your feature request related to a problem? Please describe.
In some situations service accounts may need MFA excluded for certain services. AD Sync is one example. Using standards to enforce MFA for all users is great, but there is no ability to exclude a single user or group from the policy and so MFA gets re-enabled every standards check.
Describe the solution you'd like
Ability to select/specify a set of excluded users from the standard/policy.
@KelvinTegelaar commented on GitHub (Apr 25, 2022):
CIPP is made to only apply a secure configuration - The ADSync exclusion is already in place and a huge exception. We will not support making configurations less secure so this is a wontfix.
@bbeamts commented on GitHub (Apr 25, 2022):
Thanks for quick responses Kevin and sorry to have bombarded on a few of these (egg on my face). We have two tenants with MFA forced and ADSync is failing since enabling.