Authentication Methods
The Authentication Methods page manages the tenant's Microsoft authentication methods policy — which sign-in methods users are allowed to register and use, and which groups each method is enabled for.
This is the modern replacement for the legacy per-user MFA settings and the Security Defaults toggle. It is the tenant-level control that decides whether users can use Microsoft Authenticator, FIDO2 security keys, Temporary Access Pass, SMS, voice call, or a hardware or software OATH token.
Find it at Secure > Conditional Access > Authentication Methods.
Access. You need the Manage permission on Secure to change authentication methods.
This page changes the live tenant. Augmentt states this on the form: "Changes update this tenant's Microsoft authentication methods policy." There is no simulation or staging step — a save takes effect in the customer's tenant.
