Once mandatory MFA has been set, administrators should receive an email alert each time a user logs in without completing MFA

When MFA has been set to mandatory, a user can choose to continue to log in without setting MFA. There is no limit to the users log in. Administrators need to review user settings to check. Email notification of the event would make the administrators aware.

The feature would improve general security

In my opinion, filling the administrator’s mailbox with messages from users who do not activate MFA when it is required is not the best approach. This can be a little tricky when you have other maintenance or alert emails in the middle to review and you may delete some of them by accident.

Maybe it’s a better solution, like when setting account recovery as mandatory, that the user is prompted to set up MFA upon login and can’t do anything unless they complete the process

