1 October,18 at 03:37 PM
There's this line in the log to confirm it:
[2018-08-24 15:50:14.799 -0700] LogonUI.exe[1228,7656] Verbose: dzMfaCredentialProvider.dll:Centrify::CredentialProvider::Settings::IsZonelessMfaEnabled|Get ZonelessMfaEnabled_GP: true
As the MFA is pushed via group policy, it does not allow us to delete the entry in agent configuration.