Conditional access policies

Rob B 6 Reputation points
2023-12-04T23:50:50.35+00:00

Hello all,

I've set up a conditional access policy to block access to all cloud apps from unauthorized devices. This is setup for BYOD users. I have an iphone which has o365 basic apps installed word, outlook etc... I'm logging in as a user that's using their own iphone (BYOD) with an AAD account. We are using MAM with an app protection policy. I downloaded company portal and logged in as the user, but i'm getting an error. "You cannot access this right now",

"Your sign-in was successful but does not meet the criteria to access this resource. For example, you might be signing in from a browser, app, or location that is restricted by your admin". Error code: 53003. Below are screen shots of our conditional access policy.

Target resources: User's image

Conditions: User's image

User's image

User's image

Grant: is set to block.

Any assistance on what i'm doing wrong would greatly, greatly be appreciated. Thank you in advance.

Microsoft Security | Intune | Other
{count} votes

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.