Can I add a non-Microsoft product to "Approved client apps"? (Azure AD > Conditional Access > Require approved client app)

simple123 1 Reputation point
2022-07-09T18:10:51.2+00:00

Hi, my company's mobile app supports Microsoft Azure AD SSO.

But some of our clients who use Conditional Access > Require approved client app are experiencing blocking when trying SSO because my app is not listed on Approved client apps.

When I tested some non-Microsoft mobile apps (particularly those supporting Intune), I saw these apps redirect users to Microsoft Edge for an SSO flow and then bring them back to the app via a universal link.

But in the case of Microsoft Teams, which is one of the "Approved client apps," it just opens an in-app web view and have users go through the SSO flow in there.

Is there any way to implement the same SSO flow for my non-Microsoft app so it can pass "Require approved client app" without having to direct users to Microsoft Edge? Or, is the above mentioned apps' approach that goes through Edge is a generally recommended solution?

Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,663 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,346 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. 2022-07-10T03:10:21.957+00:00

    Hello @simple123 , in order for your app to pass the require approved client app CA requirement you need to integrate it with the Intune SDK or wrap it with the Intune App Wrapping Tool. For more information take a look to Apps you can manage with app protection policies. The aforementioned approved client app list is only meant to be updated by Microsoft.

    Let us know if this answer was helpful to you or if you need additional assistance. If it was helpful, please remember to accept it and complete the quality survey so that others in the community with similar questions can more easily find a rated solution.