Hi,
in case a user forgot the token generator / smartphone at home.
Is there a better way than to remove a user from Authentication / Multi-factor authentication (MFA) settings?
Imagine you set
One-time password (OTP)
required for: All users
What do you do when CEO calls you (and you know it's him) and asks for temporary exception?
Other case:
When you set it for a specific group and now one user from that group needs to be excluded?
You would need to remove the group from the settings, add all users as single user object again and except that one user.
At first I was hoping toggling a MFA Token on and of at the individual user would help but it just disables that token so the user cannot login at all.
But such an option would meet my requirement exactly.

This thread was automatically locked due to age.