I am looking to design an MFA policy in B2C that has a longer refresh token window (let\'s say 1 day) to avoid frequent MFA challenges, but have an elevated access portion o