How have others, or what is the best practice for protecting IFS Enterprise Explorer with Multi-Factor Authentication when exposed to the web via reverse proxy?
Aurena is very straight forward, as you can just configure a Conditional Access policy for it to enforce MFA and target the Aurena apps.
When configured as per the documentation we were given when setting up Apps 10 for O365 authentication, the Enterprise Explorer app doesn’t come up in the list of apps meaning there’s no obvious way to enable MFA for enterprise explorer, thus exposing IFS to the public internet with no MFA.
One option looks like Azure App Proxy but interested to see how/what others use.