Forum Discussion
Ian Clarke
Feb 07, 2022Copper Contributor
MCAS Session Rule for Personal Devices
Hello Is it possible to create an MCAS Session Policy to block uploads/downloads for Personal Devices only (not corp devices)? I don't seem to have the option to do this. I can only set a polic...
Bala_Pandian
Feb 08, 2022Copper Contributor
Just a clarification. In general sense, all corporate devices would Domain join / Azure AD join and hence compliant.. Personal device would not join Azure AD.
Is that not the case in your environment?
Is that not the case in your environment?
Jonhed
Feb 08, 2022Iron Contributor
MCAS supports client certificates for device identification, so I suppose you could install client certificates on corp devices, to distinguish corp devices from personal devices.
https://docs.microsoft.com/en-us/defender-cloud-apps/proxy-intro-aad#managed-device-identification
https://docs.microsoft.com/en-us/defender-cloud-apps/proxy-intro-aad#managed-device-identification