Can a custom 53003 message be created to replace the default?

Jemison, Chad 0 Reputation points
2024-10-24T19:00:27.1866667+00:00

When validating Conditional Access violations, the default 53003 error provides too much information about the client and login attempt. Is there a way to customize this error response so if a Conditional Access policy is violated a very generic response is provided to far end and not disclose so much information that can be used to further attempt compromise.

Microsoft 365 and Office Install, redeem, activate For business Windows
Microsoft Security Intune Security
Microsoft Security Microsoft Entra Microsoft Entra ID
{count} votes

1 answer

Sort by: Most helpful
  1. Crystal-MSFT 53,981 Reputation points Microsoft External Staff
    2024-10-25T01:57:40.47+00:00

    @Jemison, Chad, Thanks for posting in Q&A. Based on my researching, currently, it is not possible to customize the conditional access error message yet. But your thought of security consideration is good. You can feedback in the following location to see if we can get this feature in the future.

    https://feedback.azure.com/d365community/forum/22920db1-ad25-ec11-b6e6-000d3a4f0789

    Thanks for your understanding.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.