Forum Discussion
Skipster311-1
Jul 07, 2021Iron Contributor
Conditional Access app control
I have configured a CA policy to use a custom policy for CA app control. When i navigate to cloud app security and "Conditional Access App Control apps" and add an app, i search for Sharepoint. I the...
pvanberlo
Steel Contributor
For the featured apps (mostly Office 365 related) you can set up a CA policy directly in Azure AD to enable CAAC. Create a new policy, make sure that you select the correct cloud app under the Assignments tab, and then go to Session and select the 'Conditional Access App Control' checkbox. It'll allow you to block downloads or monitor only. You still won't be able to define custom policies there for these apps though. The custom policies at a high level also offer the same actions.
This is documented at https://docs.microsoft.com/en-us/cloud-app-security/proxy-deployment-aad#step-1--configure-your-idp-to-work-with-cloud-app-security
Also, for greater insight into Office 365, I would recommend connecting Office 365 to MCAS.
This is documented at https://docs.microsoft.com/en-us/cloud-app-security/proxy-deployment-aad#step-1--configure-your-idp-to-work-with-cloud-app-security
Also, for greater insight into Office 365, I would recommend connecting Office 365 to MCAS.
Skipster311-1
Jul 08, 2021Iron Contributor
pvanberlo Thank you for the info. O365 is connected to MCAS. I will read the article you posted. Thank you again