How can I set conditional access for only specifying device to log in to Microsoft 365.

exchange beginner 1 Reputation point
2022-10-31T01:30:36.107+00:00

Hi all
I have an EMS E3.
I want to allow only specifying devices to log in to Microsoft 365 using Conditional Access and Intune or etc.
Is it possible? How do I set it up?

Microsoft Security Microsoft Entra Microsoft Entra ID
Microsoft Security Intune Other
{count} votes

3 answers

Sort by: Most helpful
  1. risolis 8,741 Reputation points
    2022-10-31T04:09:25.407+00:00

    Hello @exchange beginner

    Thank you for sharing this question on this community space.

    I would like to gather the next link on which you can set up this specific requirement.... So please direct yourself down below:

    https://endpoint.microsoft.com/#view/Microsoft_Intune_Workflows/SecurityManagementMenu/~/overview

    I hope you can find this useful to overcome your concern.

    Looking forward to your feedback,

    Cheers,

    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

    0 comments No comments

  2. Lu Dai-MSFT 28,496 Reputation points
    2022-10-31T06:04:54.543+00:00

    @exchange beginner Thanks for posting in our Q&A.

    For creating conditional access policy, please refer to the following article:
    https://learn.microsoft.com/en-us/mem/intune/protect/create-conditional-access-intune

    And you can configure "Filter for devices" under this conditional access policy's Conditions to filter the specific devices.
    https://learn.microsoft.com/en-us/azure/active-directory/conditional-access/concept-condition-filters-for-devices

    Hope it will help.


    If the answer is the right solution, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


  3. Sandeep G-MSFT 20,906 Reputation points Microsoft Employee Moderator
    2022-11-03T06:47:58.157+00:00

    @exchange beginner

    To answer your question, you can configure conditional access policy in Azure AD for particular device.
    You can configure conditional access policy by using IP address.
    You can create a named location in CA policy and use that named locations in CA policy while configuring it.

    This will allow you to configure access only from specific IP addresses.

    You can also refer to below article to learn more about named locations,
    https://learn.microsoft.com/en-us/azure/active-directory/conditional-access/location-condition

    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.