Security Update: MFA Implementation message after yokohama upgrade

HarnoorK
Tera Contributor

i don't want MFA implementation on dev instance and have confirmed same from my collegues. how can i remove the message and remove MFA from sso instance.

2 REPLIES 2

iekosmadakis
Mega Sage

Hello @HarnoorK !
To handle the MFA behavior navigate to: Multi-factor Authentication > Properties and disable the relevant options.

iekosmadakis_0-1750182976851.png

 

iekosmadakis_1-1750232463352.png


Please consider marking my answer as helpful and accepting it as the solution if it assisted you in any way.

Ambuj Tripathi
ServiceNow Employee
ServiceNow Employee

Hi @HarnoorK 

 

Since we have enforced the MFA on all the instances irrespective of their type (dev/testing/prod/subprod), and we have provided enough flexibility to exempt or exclude the users based on multiple parameters, be it role, group, IP, location etc etc, we suggest to give a second thought before disabling the MFA.

 

I agree if you are using SSO to login for most of the users in the instance, there are still few users who would be logging in with username, pwd based login and for these users, we highly recommend to enforce the MFA as it would act as the safeguard in case the username and password gets compromised accidently.

 

Please reconsider this decision to disable the MFA in your instance and let us know if you have any further queries.

I am dropping here the KB Articles which further talk about the MFA Enforcement and further available options to configure the MFA according the the business requirements.

 

Concise KB about MFA Enforcement - KB1700938 

Detailed FAQ KB About MFA Enforcement - KB1709783 

 

Thanks!

-Ambuj