Forum Discussion
Conditional Access control
is it possible to apply conditional access control on a device with one drive app? if a user is using one drive app and the device is not managed, block downloads.
- Swaminathan_ArumugamBrass Contributor
esnecho991 You need to apply app protection policies with condition access to enable DLP in unmanaged devices.
https://docs.microsoft.com/en-us/mem/intune/apps/app-protection-policy
- esnecho991Copper Contributor
Swaminathan_Arumugam that requires intunes on my devices.
how about my user's laptop and mobile pads.
- Swaminathan_ArumugamBrass Contributor
- alexandertuvstromBrass Contributor
Are the other devices in your environment hybrid azure ad joined? If you have it, you can create a conditional access rule "Block Unmanaged Device File Downloads".
Users and groups: All users
Cloud App: Office 365 SharePoint Online
Conditions:
- Client Apps: Mobile Apps and desktop clients
- Device state: Configure YES, Include: All device state, Exclude: Device Hybrid Azure AD joined
Access Controls: Block Access