Description:
A registration campaign in Microsoft Entra ID is a feature that enables administrators to encourage or require users to register for Multi-Factor Authentication (MFA) and self-service password reset (SSPR) in a phased rollout, allowing for a gradual transition to more secure authentication methods.
Compliant: Enabled or Microsoft Managed
Not Compliant: Disabled
Why:
This campaign enables administrators to specify which users are prompted to register, customize the registration experience, and set a deadline for registration, ensuring that users are adequately prepared and informed throughout the process.
Status detail shown in Augmentt: This setting doesn't affect your secure score
This check reports a count rather than a simple pass/fail. It is Configured when every in-scope item is compliant, Partially Configured when some are, and Not Configured when none are.
Scoring: This check does not contribute to the Posture Recommendations score.
Category: General
Microsoft Licensing: Works with Basic licensing
Secure Score Impact: Not verified. No Microsoft Secure Score control could be confirmed for this setting from published sources. See the note in README.md before publishing this field.
Remediation in Augmentt: Configure directly in Augmentt (Configure tab)
Compliance Frameworks:
NIST CSF 2.0 — PR.AA-02
HIPAA Security Rule — 164.312(d)
Microsoft documentation:
_KB status: already published as "Microsoft MFA Campaign" — update the existing step in place._
_Source: Augmentt native check. Check ID mfacampaign (module 33)._
Sourced for this page:
Secure Score — No Microsoft Secure Score control name is published for this setting and Augmentt does not read one.
Editor note — not defined in the product: no rationale defined in-app.
Draft metadata — apply these as Stonly tags in the console, then delete this block. The Stonly API cannot set tags, so they are recorded here instead.
Tags: posture-check · compliance-audit · Microsoft Entra ID · General · M365 Basic · NIST CSF 2.0 · HIPAA
