How to block any Windows Logins from an AAD Users except on 1 specific computer?

Bletzer, Eike-Alexander 0 Reputation points
2023-03-21T13:03:34.2566667+00:00

I have a challenge in my company to set up a user who is only allowed to log on to a specific computer. On all other computers the Windows login must be blocked. All other users are still allowed to log in on all computers. I have already tried it with conditional access, but there the Windows login is not blocked, only the web apps. I have also found an Intunes catalog, which I would have to roll out for each individual device and that just does not always work from experience with 100% of the devices. Do you have any other ideas or tutorials?

Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,305 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Andy David - MVP 141.1K Reputation points MVP
    2023-03-21T13:11:27.9033333+00:00

    Can you filter for devices with a CA policy and block the user to all devices except that one machine?

    https://learn.microsoft.com/en-us/windows-365/enterprise/restrict-office-365-cloud-pcs

    User's image