A cloud-based identity and access management service for securing user authentication and resource access
Hello @Calvin Goodman
Thank you for reaching out. I would like to inform you that to enable Passwordless phone sign-in for your test users, you need to make sure that the users are in scope for the deployment. The error you see "You cannot set up passwordless phone sign-in because your IT admin has disabled this feature", usually occurs when the user is not scope of the Passwordless policy setup on Azure AD portal.
The users must be included in the group of users enabled for passwordless sign-in. If the users are not in scope for passwordless authentication, they will not be able to register or complete the passwordless sign-in process.
You can check the Authentication methods policy in the Azure AD portal to see if the users are included in the group of users enabled for passwordless sign-in. If the users are not included, you can add them to the group. Below is the screenshot for your reference:
You can also check if the users have the latest version of Microsoft Authenticator installed on their devices and if the devices are registered with the tenant where they are used to sign in.
I hope this answer helps to resolve your issue.
Please "Accept the answer" if the information helped you. This will help us and others in the community as well.