Conditional Access - Require Trusted Device OR Trusted Location AND MFA

Alex-5595 271 Reputation points
2021-03-10T09:15:20.767+00:00

Hello i'm struggling about to create a Conditional Access Rule what should be

Require Trusted Device OR Trusted Location AND MFA

Maybe I just don't see how it works, can somebody help me?

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} votes

Answer accepted by question author
  1. Vipul Sparsh 16,331 Reputation points Microsoft Employee Moderator
    2021-03-12T08:58:33.877+00:00

    @Alex-5595 You can test the following policy to verify if it meets your requirement.
    It would be easier if you have 2 different policy for this.

    1) Require Trusted Locations - Condition
    77104-image.png

    Followed by MFA under grant

    77151-image.png

    2) Require Trusted Devices (If you mean compliant and Hybrid AD Joined)

    77137-image.png

    Under Grant

    77172-image.png

    Please do test them and let us know if it helped.


0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.