Forum Discussion

AB21805's avatar
AB21805
Bronze Contributor
Feb 21, 2023

Intune managed devices which dont allow you to log in via a specific account outside of office

Hi all,

 

Is it possible to have specific accounts which we can assign to users with intune managed devices but they can only access these specific accounts whilst they are on our network? Like a conditional access policy however I am not sure that conditional access policies works with device logins? 

 

These devices are intune only no hybrid join 

 

 

    • AB21805's avatar
      AB21805
      Bronze Contributor
      Hi They are Azure AD accounts (Cloud only)

      Normal user accounts, my worry is if I use conditional access this wont affect logging into this account from the office as they will have the account cached in a way that doesnt look at the internet for them to log in? Therefore can log in without any issues and bypassing any conditional access policies set
  • Hmerckx's avatar
    Hmerckx
    Copper Contributor
    This is absolutely possible via a CA policy that makes use of Named Locations containing the egress ranges of each office.

Resources