[2 Features] - Is it possible to enfore MFA 8 hour expiration and Filtering in the Tunneler?

I have been testing the enforcement of MFA for our MacOS Tunneler and it is working; however, I did want to ask 2 general questions.

  1. Is it possible to enforce MFA with a TTL so they have to re-enter their MFA token again? (e.g After 8 hours they must re-enter their token again.) I am using the Auth Policy for this process. Posture Checks allows this.
  2. Can a Filter drop down be implemented on the MacOS tunneler to only focus on certain Addresses or Names? Developers ask if this is possible or a search function.

image

Hi @MacFee, you do this with a posture check. Add that posture check to the services you want using a service policy