Conditional Access policy not applying

Thomas Barnish 0 Reputation points
2024-02-23T18:01:23.18+00:00

We have provided access to specific external users for an application. We have a conditional access policy that applies to all users that requires multi-factor authorisation. From the sign in logs this policy is only being applied intermittently and when not applied the user access is denied. When the conditional access is not applied the authentication goes to single-factor. Can anyone provide a reason why the conditional access policy isn't being applied.

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
23,646 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Marco Zemp 235 Reputation points
    2024-02-25T19:18:33.03+00:00

    @Thomas Barnish it looks like the conditional access policy does not apply to this user. Can you check under Conditions whether there are any other exceptions?

    To check whether all device platforms, locations and client apps used by the user also apply to this login attempt. You can also use "What If" (in the conditional access policy view) to change the conditions and check when the policy applies and when it does not.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.