EXT-02: Require MFA for Guest Users
Frequently asked questions about implementing and managing the EXT-02 security control in Microsoft 365 and Entra ID.
QWhat is EXT-02 (Require MFA for Guest Users)?▼
EXT-02 is a security control that guest accounts often have weaker security than internal accounts. requiring mfa for guests ensures external collaborators meet the same authentication standards as your employees. It requires that guest users are included in mfa conditional access policies and guests must complete mfa on every sign-in, trust settings do not exempt guest mfa requirements.
QWhy is Require MFA for Guest Users important for Microsoft 365 security?▼
Guest accounts often have weaker security than internal accounts. Requiring MFA for guests ensures external collaborators meet the same authentication standards as your employees.
QHow do I implement EXT-02 in my tenant?▼
TrueConfig provides one-click remediation for EXT-02. Ensures Conditional Access MFA policies include guest users
QWhat license do I need for EXT-02?▼
This control can be implemented with any Microsoft 365 subscription, including free Azure AD.
QWhich security baseline includes EXT-02?▼
EXT-02 is included in the TrueConfig Recommended Secure baseline (Level 1). This is the foundation level suitable for most organizations.
5
Questions
1
Related Controls
—
Categorized
Related Resources
Still have questions?
Our security experts are here to help. Start a free trial and get personalized guidance for your Microsoft 365 environment.
Start Free Trial