Salesforce recently made it mandatory to enable MFA with SSO in salesforce products.
To enable MFA in your sso enabled org, follow the below steps :
- Do the steps mentioned in the above video to create permission set and assigning users to it. This permission set will enable users to use MFA.
- Once you have enabled MFA for your users, go to session settings page in setup and at the bottom of the screen check if MFA is selected in High assurance.
- Go to profiles, then in the Session security select the Option High Assurance. This will make sure that MFA authentication page is prompted after your SSO login page.
- Once done, open a separate incognito window and try to login to your org. You should now see the MFA page.