Is it possible to create a conditional access policy in Azure AD Application Proxy that will check if a mobile device is enrolled in a 3rd party MDM solution, like AirWatch? Is something like this possible or do I need a different solution?
There are a few things that I need some clarification on;
The end goal here is to have MFA prompts for internal/external users who try access SPO/ODB from outside of trusted networks, regardless of the devices being managed/unmanaged.
For Device management (MDM) there is Airwatch in place already that has all the managed devices registered.
We are intending to use Azure Conditional access control for this scenario but the documentation says that the MDM used for this is Intune, my question is can the current MDM Airwatch be used to feed information to Azure AD policies about a device being compliant or not?
This is what we intend to apply to control access from unmanaged devices that are not on the network.