Tenant restrictions now available for Azure AD

MVP

The Azure AD teams keeps on delivering on important features, the latest one being the ability to "lock" your users to only use specific Office 365 tenant. This is done by inspecting the logon request and validating the value of two headers, Restrict-Access-To-Tenants and Restrict-Access-Context.

 

The blog announcement is here: https://blogs.technet.microsoft.com/enterprisemobility/2017/01/31/new-enhanced-access-controls-in-az...

 

Detailed instructions as well as an easy to use software-based proof of concept method can be found here: https://docs.microsoft.com/en-us/azure/active-directory/active-directory-tenant-restrictions

3 Replies
I am unable to access the BLOG Link . I get the "Access Denied" Page.
One of my client wants to ensure that the access is allowed only one to on Azure Tenant at any given point in time. Will this feature help?

@Martin1500 No, the feature to achieve that is called Tenant Restrictions and is documented here Use tenant restrictions to manage access to SaaS apps - Microsoft Entra | Microsoft Learn

 

It's pretty hard to do, and complex to manage (needs updating if your users get invited to use a service provided by a partner for example). 

Thanks Steven