This page shows MFA information for all users. The accuracy of this data depends on whether collection was done with a privileged account (Security/Global Reader/Admin) and whether the --mfa flag was specified during data gathering. MFA can be enforced per user or based on conditions via Conditional Access. Per-user MFA can be inferred from the Application Roles page when data collection was done with a limited user, it will only show up as enabled/enforced in this view when collecting data as admin. Whether a FIDO key is added to an account can also be collected using any user account.
Name {{row.displayName}} UserPrincipalName {{row.userPrincipalName}} Account Enabled check Per-user MFA {{row.perusermfa}} Authenticator app check Phone number check FIDO check Registered MFA Methods {{row.mfamethods}}None Methods phonelink_lock notifications_active sms phone_callback passkey passkey