Forum Discussion

Robert Woods's avatar
Robert Woods
Steel Contributor
Jan 03, 2019

Logging for conditional access

I have a policy set up to only allow compliant mobile devices to access Exchange Active Sync. When reviewing access logs I show Not Applied under the logs, and device info is blank for compliance. It also shows Mobile Safari for the browser info. Is the what I should expect in the logs? User is accessing mail in the default iOS mail app on the device. 

 

 

My policy is set to cover all users

Cloud apps: Exchange Online

Conditions: 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Access Controls: 

  • bbhorrigan's avatar
    bbhorrigan
    Brass Contributor

    Are you sure you are using modern authentication?  Generally I think AS does not use modern authentication.  

    • eglockling's avatar
      eglockling
      Steel Contributor

      EAS does support modern authentication, just limited when it comes to Conditional Access. You're definitely asking the right question though. It appears as though legacy authentication could be in use, which is why the conditional access policy isn't applied. Mail for iOS 11.3.1 or later supports modern authentication, so I would suggest Robert Woods confirm the iOS version of the device to ensure it will comply.

Resources