Conditional Access fails for users who use MS edge but works for users who uses Chrome

Chau Le 96 Reputation points
2022-03-23T18:22:10.977+00:00

We have a conditional access policy for MFA which we put exemption for Hybrid join devices or device marked as compliant...

Basically if the users use their work machine that is hybrid join, the should not be prompted for MFA for this one application.

Issue is when the user uses MS Edge to connect to the app, they get prompted for MFA and the sign in logs shows a non compliant device

when the users uses Chrome for the same application they DO NOT get prompted (as expected per the CA policy).

How can we start to troubleshoot this?

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,563 questions
{count} votes