I am trying to set up Azure MFA for our Cisco AnyConnect VPN clients following this document. https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-nps-extension-vpn
We currently run RADIUS on Windows 2012 R2 for our Wireless Authentication.
After installing the MFA Azure Extension, all of our Wireless users began getting prompted for MFA. All we want us VPN users to get prompted for MFA, not our WiFi users. How can I separate it out so Wireless does not get prompted but Cisco AnyConnect users do get prompted? It seems like an all or nothing. Any help would be appreciated.