Skip to content

Commit 656c828

Browse files
Merge pull request #226079 from vimrang/patch-11
Update certificate-based-authentication-faq.yml
2 parents 0d14f48 + 641d990 commit 656c828

File tree

1 file changed

+3
-2
lines changed

1 file changed

+3
-2
lines changed

articles/active-directory/authentication/certificate-based-authentication-faq.yml

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -120,9 +120,10 @@ sections:
120120
The browser caches the certificate after the certificate picker appears. If the user retries, the cached certificate is used automatically. The user should close the browser, and reopen a new session to try CBA again.
121121
122122
- question: |
123-
Why can't single-factor certificates be used to complete MFA?
123+
How can I use single-factor certificates to complete MFA?
124124
answer: |
125-
There's no support for a second factor when the first factor is a single-factor certificate. We're working to add support for second factors.
125+
We have support for single factor CBA to get MFA. CBA SF + PSI (passwordless phone sign in) and CBA SF + FIDO2 are the two supported combinations to get MFA using single factor certificates.
126+
[MFA with single factor certificates](../authentication/concept-certificate-based-authentication-technical-deep-dive.md#single-factor-certificate-based-authentication)
126127
127128
- question: |
128129
Will the changes to the Authentication methods policy take effect immediately?

0 commit comments

Comments
 (0)