Specify Centrify Identity Platform URL for multi-factor authentication

Specify which Centrify identity platform instance URL the agent will access in order to implement multi-factor authentication for users in classic zones and Auto Zones.

Enable this policy if you have access to more than one instance URL. If you have multiple instance URLs and do not specify which one the agent should use for multi-factor authentication, MFA will fail.

If you only have a single platform instance URL for all of the connectors in your Active Directory forest, the agent will use this URL for multi-factor authentication by default, and you do not need to enable this policy.

When specifying a cloud URL, the URL should be in the following format:


For example:


Note that on computers running Centrify Express agents, you must set this policy using the configuration parameter. Group policies are not supported for Express agents.

This group policy modifies the adclient.legacyzone.mfa.cloudurl configuration parameter in the agent configuration file.