Forum Discussion
Conditional Access Policy - Only allow EntraID Joined devices to access SharePoint Online
Hi
I have a cloud-only Microsoft 365 Tenant, 40 devices all EntraID joined and I want to only allow users to access SharePoint Online from the EntraID devices and not for example from their home computers.
Is this achievable through Conditional Access policies? I see an option for hybrid joined but not EntraID joined
3 Replies
- JoshB531Brass ContributorHi There 
 I am trying to create a Entra ID conditional access policy with the following criteria
 1. Only grant Access to two cloud apps
 2. Only allow access from a named location (already created)
 3. Enforce MFA on each login.4. Only apply to users in Entra ID security group. 
 Been having a bit of nightmare getting this working. The MFA part works fine but I am still being allowed access even if I am not on the Named location. When I check signin logs, it flags I am not on the approved site but its still allowing access.
 Can any one help.
 Josh
- chrissystemagicCopper Contributor