Mandatory MFA enforcement
Microsoft's edit ·
Microsoft's commit message in MicrosoftDocs/entra-docs · commit 84e17c5 · +2 −2 lines · also on GitHub
⋯ 1 unchanged line
22
title: Plan for mandatory Microsoft Entra multifactor authentication (MFA)
33
description: Learn about mandatory multifactor authentication (MFA) enforcement for Azure, Microsoft 365, and other admin portals, and how to prepare your tenant.
44
ms.topic: concept-article
5
−ms.date: 01/28/2026
5
+ms.date: 04/03/2026
66
ms.reviewer: shahjoy
77
ms.custom: sfi-ga-nochange, msecd-doc-authoring-106
88
# Customer intent: As an identity administrator, I want to plan for mandatory MFA for users who sign in to Azure portal so that my organization is prepared before enforcement begins.
⋯ 166 unchanged lines
175175
176176
## Migrate federated Identity Provider to external authentication methods
177177
178
−Support for external MFA solutions is in preview with [external authentication methods](https://aka.ms/EAMAdminDocs), and can be used to meet the MFA requirement. The legacy Conditional Access custom controls preview doesn't satisfy the MFA requirement. You should migrate to the external authentication methods preview to use an external solution with Microsoft Entra ID.
178
+Support for external MFA solutions is available with [external MFA](https://aka.ms/EAMAdminDocs), and can be used to meet the MFA requirement. The legacy Conditional Access custom controls preview doesn't satisfy the MFA requirement. You should migrate to external MFA to use an external solution with Microsoft Entra ID.
179179
180180
If you're using a federated Identity Provider (IdP), such as Active Directory Federation Services, and your MFA provider is integrated directly with this federated IdP, the federated IdP must be configured to send an MFA claim. For more information, see [Expected inbound assertions for Microsoft Entra MFA](how-to-mfa-expected-inbound-assertions.md).
181181
⋯ 144 unchanged lines
Microsoft's Markdown source from MicrosoftDocs/entra-docs, © Microsoft Corporation, under MIT. Changed lines with up to 3 unchanged lines around each; ChangeIntel kept this copy 9 Oct 21:50 UTC. The commit date is when the source changed, which can be hours or days before Learn published it.