Restricting Active Directory logons and Azure M365 verification

Gilreath, Joshua 1 Reputation point
2023-10-02T17:21:04.3333333+00:00

Is it possible to restrict a user's logon to specific machines in Active Directory without requiring P1 or P2 license for conditional access rules? When I apply logon restrictions, the user is unable to verify their Azure M365 account to sign into Office apps on that computer. This is the error message they receive as shown below:

User's image

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,635 questions
Windows 365 Enterprise
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
22,089 questions
{count} votes

1 answer

Sort by: Most helpful
  1. David Broggy 5,901 Reputation points MVP
    2023-10-02T18:10:10.25+00:00

    Hi Gilreath,

    Given you're specific requirements it will likely require Conditional Access.

    Reference:

    https://techcommunity.microsoft.com/t5/security-compliance-and-identity/can-we-restrict-aad-user-logins-to-be-from-specific-devices-for/m-p/1693391

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.