Public/Configuration/Baseline/ConditionalAccessPolicies/JyskIT-Baseline-CA-RequireMFA.json

{
    "conditions": {
      "applications": {
        "includeApplications": [
          "All"
        ]
      },
      "locations": {
        "includeLocations": [
          "All"
        ],
        "excludeLocations": [
          "AllTrusted"
        ]
      },
      "users": {
        "excludeGroups": [
          "#ReplaceGroup#_JyskIT-Baseline-CA-RequireMFA_Exclude",
          "#ReplaceGroup#_JyskIT-Baseline-Administrators"
        ],
        "includeUsers": [
          "All"
        ]
      }
    },
    "displayName": "JyskIT-Baseline-CA-RequireMFA",
    "description": "Require MFA for all users.",
    "grantControls": {
      "operator": "OR",
      "authenticationStrength": {
        "id": "#ReplaceAuthenticationStrength#_Jysk IT - MFA Methods"
      }
    },
    "state": "enabledForReportingButNotEnforced"
  }