A bit late to the game, but here we go.
In mid-November, we launched a big piece of work we've been working on for a very long time. We call this the Authentication Methods Policy Convergence in #AzureAD. 1/n
With this preview, we have added more management control for auth methods that have been there in #AzureAD for a long time. The main problem with the old MFA Portal and SSPR blade was that it only allowed admins to enable/disable methods for ALL users, no group targeting. 2/n
With auth methods policies we added group targeting for all methods, exclusions and a migration control that lets you decide when you want these policies to apply to MFA and SSPR and ignore old settings. 3/n
One of the most requested features was the ability to scope phone methods (SMS, Voice) to only a subset of users in the tenant. Now you can do exactly that. 4/n
There's more coming! We are adding Hardware Oath, the ability to target roles, API and UX to get a view of what methods a user is allowed to use, etc. 5/n