This CSP contains ADMX-backed policies which require a special SyncML format to enable or disable. You must specify the data type in the SyncML as <Format>chr</Format>. For details, see Understanding ADMX-backed policies.
The payload of the SyncML must be XML-encoded; for this XML encoding, there are a variety of online encoders that you can use. To avoid encoding the payload, you can use CDATA if your MDM supports it. For more information, see CDATA Sections.
ConfigureTenantRestrictions
Scope
Editions
Applicable OS
✅ Device ❌ User
✅ Pro ✅ Enterprise ✅ Education ✅ Windows SE ✅ IoT Enterprise / IoT Enterprise LTSC
✅ [10.0.20348.320] and later ✅ Windows 10, version 2004 with KB5006738 [10.0.19041.1320] and later ✅ Windows 10, version 20H2 with KB5006738 [10.0.19042.1320] and later ✅ Windows 10, version 21H1 with KB5006738 [10.0.19043.1320] and later ✅ Windows 10, version 21H2 [10.0.19044] and later ✅ Windows 11, version 21H2 [10.0.22000] and later
This setting enables and configures the device-based tenant restrictions feature for Microsoft Entra ID.
When you enable this setting, compliant applications will be prevented from accessing disallowed tenants, according to a policy set in your Microsoft Entra tenant.
Opomba
Creation of a policy in your home tenant is required, and additional security measures for managed devices are recommended for best protection. Refer to Microsoft Entra tenant Restrictions for more details.
Before enabling firewall protection, ensure that an App Control for Business policy that correctly tags applications has been applied to the target devices. Enabling firewall protection without a corresponding App Control for Business policy will prevent all applications from reaching Microsoft endpoints. This firewall setting isn't supported on all versions of Windows - see the following link for more information.
Esta ruta de aprendizaje proporciona instrucciones sobre cómo configurar su espacio empresarial de Microsoft 365, incluidos el perfil de organización, las suscripciones de espacio empresarial, las cuentas y licencias de usuario, los grupos, los dominios personalizados y la conectividad de cliente.
Planee y ejecute una estrategia de implementación de puntos de conexión mediante elementos esenciales de la administración moderna, los enfoques de administración conjunta y la integración de Microsoft Intune.