Forum Discussion
AtharvaTheMaverics
Jan 06, 2026Copper Contributor
Restrict User Access to Specific Devices and Location Using Intune & Conditional Access
We have a customer requirement to restrict user sign-ins using Intune and Azure AD (Entra ID) Conditional Access. The goal is to allow access only from specific, managed devices and only from a speci...
Bogdan_Guinea
Jan 08, 2026Iron Contributor
Hi,
- under Conditional Access | Named locations, add your IP range location. You need one for specific cities or locations — if it were a country, this step would be different.
- Create the CAP , under Conditions | Locations | Configure | Selected networks and locations -> add you IP Range that you where creating at Step 1.
- Under Grant select Grant Acces and mark Require device to be marked as compliant
- Test it in Report-Only Mode and Exclude your Emergency Accounts from this Policy
- Check theInsights and Reporting in order for you to review his CAP and his impact.
Good luck!