Forum Discussion
Don_Vlogeer
Jul 26, 2023Brass Contributor
Limit user login only from domain joined or compliant pc
Dear All, is there anyway we to limit user access mailbox only from domain joined pc, not allowed to login via personal or public pc. for owa we can certainly use ADFS to setup rules, is th...
VasilMichev
Jul 26, 2023MVP
Conditional access should help: https://learn.microsoft.com/en-us/azure/active-directory/conditional-access/howto-conditional-access-policy-compliant-device
Don_Vlogeer
Jul 26, 2023Brass Contributor
May I know in CA under target resources, there is no exchange server, if exchange online covering on premise mailboxes as well ?
thank you.
- VasilMichevJul 26, 2023MVPThe condition you've selected applies only to cloud app (those that integrate with Azure AD). To get CA policies to work with Exchange Server, you should implement HMA: https://learn.microsoft.com/en-us/mem/intune/protect/conditional-access-intune-common-ways-use#intune-conditional-access-for-exchange-on-premises
- Don_VlogeerJul 27, 2023Brass Contributor
Thank your for quick respond. Our environment HMA already in position by following this kb, but still no luck using CA.
what else would need to setup for CA to control mailbox hosted on exchange server.
- VasilMichevJul 27, 2023MVPAre the devices Intune managed?