Jun 28 2017
- last edited on
Jul 27 2020
Found this great article: https://osddeployment.dk/2017/06/24/a-standard-azuread-user-have-access-to-browse-the-admin-portal/
Cheers to Per Larsen!
Do you have any suggestions for organizations which don't have Azure AD Premium license and cannot do conditional access policies?
I know, they need Azure AD Premium and they will buy it with EMS license, but this needs to be handled urgently.
Any other workarounds?
Jun 28 2017 02:20 AM
Well one simple way would be to block the clients from accessing https://portal.azure.com*
But I know, CA is a better option for preventing this... ;)
Jun 28 2017 01:11 PMSolution
There is a setting to disable this: Azure AD blade -> User Settings -> Restrict access to Azure AD administration portal.