How to Configure MFA for Enterprise Reporter Authentication ?
At a high level, Enterprise Reporter does not provide native MFA or SAML-based authentication for its application/UI login. Instead, the supported and recommended approach is to enforce MFA at the Microsoft Entra ID level, which Enterprise Reporter then inherits during authentication workflows.
Recommended MFA Approach :
Quest recommends using Microsoft Entra ID Conditional Access policies to enforce MFA. When MFA is enabled in Entra ID (either through Conditional Access or per-user MFA), Enterprise Reporter automatically respects those requirements for:
- Microsoft Entra ID discoveries
- Microsoft 365 discoveries
- Tenant application authentication
MFA-enabled Entra ID credentials stored in Enterprise Reporter
There is no separate MFA configuration within Enterprise Reporter itself.
Authentication-related configuration within Enterprise Reporter is managed through:
Credential Manager – for Entra ID accounts, including tracking MFA-authenticated credentials
Tenant Application Manager – for Entra ID tenant registrations and certificate/OAuth-based authentication
Any MFA enforcement is applied externally through Microsoft Entra ID policies.