Forum Discussion

nbick's avatar
nbick
Copper Contributor
Dec 04, 2024

Conditional Access and Global Secure Access

I'm testing Entra's Global Secure Access. I have a CA policy that basically says, I can't access any cloud resources unless I'm on a compliant network. I need to sign into a device with a licensed user to connect to the GSA client. If I turn off all cloud apps, I can sign into the Edge browser just fine, which then associates my user with a license that will enable the GSA client.

Here's what I really don't understand. If I target ALL cloud apps and literally exclude every cloud app available, it will not give me access. Basically, I was just trying to figure out which cloud app is blocking me from signing in, but it appears as though there is something else going on. Any help would be greatly appreciated.

 

 

1 Reply

  • GDV's avatar
    GDV
    Copper Contributor

    does the failed sign in show that the device logged in from that ip range? with it working on edge but not other browsers then i think i have a solution as i had a similar problem, for chrome we had to push out the micrsoft single sign on extension, this then lets chrome pass on the device information at login

Resources