Hi everyone, I've been considering changing a domain from being federated back to managed. Has anyone done this before? I think users will need to log in again on all their devices once I do this. From what I've seen, it looks like I just need to run one command: Update-MgDomain -DomainId -AuthenticationType "Managed". Right now, we're using the IdP for multi-factor authentication, but we'd prefer to use Microsoft's built-in MFA instead. We've already set up our conditional access policies. Any insights would be appreciated! Thanks!
3 Answers
What identity provider (IdP) are you currently using for this setup?
I'd suggest starting with a pilot group first to see if anything strange occurs with users' cached credentials. It's always a good idea to test it out on a smaller scale before rolling it out to everyone.

Related Questions
Can't Load PhpMyadmin On After Server Update
Redirect www to non-www in Apache Conf
How To Check If Your SSL Cert Is SHA 1
Windows TrackPad Gestures