3 ms·
It's not Azure, it is how your organization decides to implement MFA. The only time re-MFA'ing is 'required' is when your password expires (if it does) as your
by trevorishere 5y ago
It's not Azure, it is how your organization decides to implement MFA. The only time re-MFA'ing is 'required' is when your password expires (if it does) as your token expires.
Otherwise, you could have 365 day token lifetimes if your organization configured it. Or greater.
- tapland 5y agoI've never heard of anyone with azure properly set up then. In two orgs I've had the exact described behavior. Even for a school that uses azure =(
- brazzledazzle 5y agoMicrosoft gives well meaning but overzealous security teams too many knobs. It’s one of the reasons they can check off so many security checkboxes.
- aiisjustanif 5y agoFriendly reminder to revoke your sessions when resetting compromised users. :)