Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
We struggle with Duo’s native permissions and the lack of granularity or customization.
Two common pain points, User Managers can put a user in Bypass (we’d prefer only administrators can do this), and the Billing Admin role cannot see the Accounts t...
Hi @Kurt,
Yes, you have to use Azure AD sign-in reports in order to find your culprit accounts, and then inquire with your team to find out who is responsible for those accounts to discuss what they are used for today. It may be as simple as convert...
If you are using the Conditional Access method to protect Office 365 with Duo, then there is no Duo page redirect. The process is user types in email, clicks next, is sent to the Microsoft password reception page which you can / may have branded, a...
Hi @Kurt,
Continuous prompts for credentials are typically due to basic auth still being allowed in your o365 tenant as MFA requires Modern Auth. Older tenants (pre-2017 do not have Modern Auth turned on by default), so you have to manually enable i...
Why are you bypassing your Global Admin? Is it a break glass account with a 200+ character password? Or are you only bypassing from your local network?
You can use groups to apply different policies to different groups in the same App you are protec...