Use this group policy to disable multi-factor authentication for the Windows lock screen.
When MFA is required for logon:
If this policy is set to Enabled, users will not be required to do MFA to unlock screen.
If this policy is set to Disabled or Not Configured, users will be required to do MFA to unlock screen.
Registry Hive | HKEY_LOCAL_MACHINE |
Registry Path | Software\Policies\Centrify\DirectAuthorize\Agent |
Value Name | IgnoreScreenUnlockMfa |
Value Type | REG_DWORD |
Enabled Value | 1 |
Disabled Value | 0 |