Forum Discussion
SRPfr
Nov 10, 2020Copper Contributor
Best practice for security management (policies/rules ...) in AzureAD, Conditional Access & InTune
What's the best practice for security management in AzureAD, to manage policies/rules in MEM/InTune, Conditional Access... to easily review and add/remove access to a specific rule/right. Some exa...
Chandrasekhar_Arya
Nov 11, 2021Iron Contributor
Add directly Azure AD groups NOT users in conditional access . Make sure you create a Conditional access groups that doesnt not need MFA , all your service accounts can be added to this group
Again my take is for intune is to go with Azure AD groups the way I see
Conditional access policy 1 ( Force MFA ) has AAD group1 , 2
Conditional access policy 2 ( Exclude MFA) has AAD group 3 which typically some service accounts etc
hope that helps
Again my take is for intune is to go with Azure AD groups the way I see
Conditional access policy 1 ( Force MFA ) has AAD group1 , 2
Conditional access policy 2 ( Exclude MFA) has AAD group 3 which typically some service accounts etc
hope that helps