Forum Discussion
CarlosMorales
Apr 28, 2022Brass Contributor
Create Conditional Access Policy
Hi Team. I have a doubt, I have assign MFA for Outlook and Teams clients? In Conditional Access policy, Conditions - Device platforms - Select Windows. In Client Apps select Mobile apps and desk...
rahuljindal-MVP
Apr 29, 2022Bronze Contributor
Hi. It sounds about right. Is the CA policy not working for you?
- CarlosMoralesApr 30, 2022Brass ContributorIt only works in Teams client. In Outlook client not working.
- Adin_CalkicApr 30, 2022Steel Contributor
Hi CarlosMorales ,
This is what I would do. Make sure you use Modern authentication.
This is not ideal situation with Exchange Online App, but adding Device platfrom - Windows, Client apps - Mobile apps and Desktop clients plus enabling Modern authentication is the closest you can get.
I just tested in my environment and it will require MFA for Outlook client on Windows (if modern enabled), it does not ask you for MFA on other devices. It will not require MFA in browsers.
Good luck
Please see below, testing environment with the policy from above.
- CarlosMoralesMay 01, 2022Brass ContributorHi Adin. I really appreciate your answer.
I have configured the policy as you explain, the results:
Outlook web doest not request MFA.
Teams Client if you request MFA.
Outlook client does not request MFA, not working.
Thanks,
- rahuljindal-MVPApr 30, 2022Bronze ContributorHave you tried running your scenario against the whatif tool? Also, you can look at sign-in logs to verify if you have configured the right CA parameters or not.