If you utilize the UserPrincipalName parameter, you don't need to utilize the AzureADAuthorizationEndpointUri parameter for MFA or federated end users in environments that Ordinarily call for it (UserPrincipalName or AzureADAuthorizationEndpointUri is needed; OK to use both equally).In the course of long absences from work, people may accrue a grea