TOTP "Verify Enabled" vs "Enabled", the former not working
What's the difference between the "Verify Enabled" and "Enabled" settings for TOTP (App Authenticator) MFA configuration? I couldn't find any information on this in the documentation nor even with a few web searches. Strangely, when "Verify Enabled" (which would seem like the more secure option based on the name) was selected, the QR code in our app fails to be generated an the Auth log showed an INFO message
/factors | 422: MFA enroll is disabled for TOTP