How to cancel MFA

SotaT
Tera Contributor

I heard that MFA will be required in the Yokohama version.
Where can I remove this setting?

10 REPLIES 10

Ankur Bawiskar
Tera Patron
Tera Patron

@SotaT 

check this KB

Multi-Factor Authentication (MFA) Enforcement FAQ 

how to disable is shared here, but sharing again

How to disable Yokohama MFA enforcement if you have SSO enabled already 

AnkurBawiskar_0-1744711033733.png

 

If my response helped please mark it correct and close the thread so that it benefits future readers.

 

Regards,
Ankur
✨ Certified Technical Architect  ||  ✨ 9x ServiceNow MVP  ||  ✨ ServiceNow Community Leader

Dr Atul G- LNG
Tera Patron
Tera Patron

Hi @SotaT 

 

You can do this, but only in the PDI (Personal Developer Instance), and not in the customer instance, as there is a purpose for adding MFA. If you still want to proceed, please get approval from the client before proceeding. However, I would again recommend not doing it.

 

https://www.servicenow.com/community/security-on-now-forum/how-to-disable-yokohama-mfa-enforcement-i...

*************************************************************************************************************
If my response proves useful, please indicate its helpfulness by selecting " Accept as Solution" and " Helpful." This action benefits both the community and me.

Regards
Dr. Atul G. - Learn N Grow Together
ServiceNow Techno - Functional Trainer
LinkedIn: https://www.linkedin.com/in/dratulgrover
YouTube: https://www.youtube.com/@LearnNGrowTogetherwithAtulG
Topmate: https://topmate.io/atul_grover_lng [ Connect for 1-1 Session]

****************************************************************************************************************

Randheer Singh
ServiceNow Employee
ServiceNow Employee

Hi @SotaT ,

Thanks for your question!

Could you help us understand the reason you’re looking to disable MFA? We’ve recently enforced MFA by default as part of the Yokohama release to enhance the overall security posture of your environment and protect your users against common threats like phishing and credential theft.

While we understand that MFA might initially feel like an added step, it’s one of the most effective controls to reduce unauthorized access. Disabling it could significantly increase the risk of compromise, especially in environments where sensitive data or administrative access is involved.

If your concern is around user experience or friction during login, there are a few alternatives you might consider:

  • Use of low-friction MFA methods, like FIDO2/passkeys, which offer a secure yet seamless experience.

  • Exempting MFA using the Adaptive authentication Policy MFA context,for specific risk conditions.

You can see various scenarios listed in this KB to see how you can exempt certain users, roles, and groups from the MFA mandate. If you could tell us more about your use case, we’d be happy to help you explore options that balance security and usability!

Best,
Randheer


Want to tweak the tone to be more casual, firm, or technical?

@Randheer Singh @Dr Atul G- LNG @Ankur Bawiskar 

Thank you all for your answers.
I will look into the idea of mitigating this for specific groups and roles.
I have one concern.
Will simply setting the value of glide.authenticate.multifactor in the Multifactor Authentication Properties to false not disable it?