If domain user account logins require MFA, is there still a need for regularly enforced password changes?
Seems like MFA with a changing second factor (such as RSA token code) would be the same as a password change at every login.
If domain user account logins require MFA, is there still a need for regularly enforced password changes?
Seems like MFA with a changing second factor (such as RSA token code) would be the same as a password change at every login.