OVH Private Exchange has settings to enable 2FA for a user. However, this appears to only restrict access to OWA. Connecting Outlook (classic) is still possible without second factor.
Requiring 2FA on some connection methods but not others seems odd to me.
Is there a way to require 2FA regardless of how a client connects to Exchange?
This may be interesting to know: AWS is shuttering their WorkMail service in a year. They supported app passwords for Exchange ActiveSync, and we're looking for a replacement. I suspect there may be more companies looking for a replacement that supports app passwords for EAS. It could be an opportunity for OVH Private Exchange.