Office/Outlook 2016 Rich client sends empty join-type value failing conditional access.

Mulpuru, Siva 0 Reputation points
2023-08-03T12:44:10.33+00:00

Hello, we would like to limit access to our Exchange Oline to Managed devices [Azure Hybrid AD Join].

Unfortunately Office/Outlook 2016 windows rich client is not sending the join-type information and thus failing the conditional access check. Any suggestions to overcome this?

Note: Can confirm Device is Hybrid Azure AD Joined with dsregcmd /status and also the outlookweb via Edge browser works without issue. Edge browser passes the correct DeviceID and Join-Type information.

User's image

User's image

Outlook | Windows | Classic Outlook for Windows | For business
Microsoft 365 and Office | Install, redeem, activate | For business | Windows
{count} votes

2 answers

Sort by: Most helpful
  1. Carlos Solís Salazar 18,201 Reputation points MVP Volunteer Moderator
    2023-08-04T11:18:35.45+00:00

    Outlook 2016 does not report if the device is Azure AD joined or hybrid joined by itself.

    Ether update to Office 365 or do not apply the Join type rule for those users who have Office 2016.

    Hope this helps!

    0 comments No comments

  2. Mulpuru, Siva 0 Reputation points
    2023-08-04T17:39:42.65+00:00

    That's unfortunate office 2016 having this limitation. It appears chrome browser has the same issue but addressed with "Windows Accounts" extension. is there a similar office add-on I can enable in office 2016 to overcome this?

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.