question

Necoms-1494 avatar image
0 Votes"
Necoms-1494 asked amanpreetsingh-msft commented

Please tell me about the "Memory of Multi-Factor Authentication" function.

The URL below states that the The remember Multi-Factor Authentication feature is not compatible with B2B users and will not be visible for B2B users when signing into the invited tenants.

In that case, is it correct to understand that the cookie issued when "Yes" is selected in "Keep signed in" is valid regardless of the above functions?
https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-mfasettings

azure-ad-multi-factor-authentication
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

1 Answer

amanpreetsingh-msft avatar image
0 Votes"
amanpreetsingh-msft answered amanpreetsingh-msft commented

Hi @Necoms-1494 · Thank you for reaching out.

When you select yes for Keep Me Signed In (KMSI), persistent cookie is issued, which is stored on the disk and includes both 1st and 2nd factor (MFA) authentication information. Whereas, The feature "Remember Multi-Factor Authentication for X days" is only for 2nd factor authentication. Users will still have to perform 1st factor authentication but won't be prompted for 2nd factor for X number of days.

So, the answer to your question is: Yes, even though B2B users don't get "Remember Multi-Factor Authentication for X days" option, they can still use KMSI to avoid repeated MFA prompts.


Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

· 1
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

Hi @Necoms-1494 · Just checking if you have any further question.

0 Votes 0 ·