@Luke Williams I would suggest exclude those applications from the CA Policy which is triggering MFA based on location and create another policy for those applications if you want to restrict access on the basis of some other conditions. IP addresses of the resources can be changed at any point in time so whitelisting IP address is not a good idea.
-----------------------------------------------------------------------------------------------------------
Please "Accept as answer" wherever the information provided helps you to help others in the community.