官术网_书友最值得收藏!

Conditions

The Conditions section allows you to choose when your policy will apply. You can do this by specifying client sign-in risk, device platforms, locations, client apps, and device state requirements:

For example, you may wish to configure Conditions | Client apps (preview) when your company wants to enforce MAM, thereby disallowing copying and pasting from Outlook to other apps. By disabling Outlook access via the Browser, you can force users to use a client or mobile app in which you're able to enforce that MAM procedure:

Under Device state (preview), you can configure your policy so that it excludes devices that have been marked as compliant via one of the device compliance policies you configured in Intune:

You may be asked to create conditional access policies that meet a variety of needs. For example, you could create a conditional access policy based on the following requirements: 

  • Network access control
  • Device or sign-in risk
  • Device compliance (platforms, OS version, personal versus corporate, and so on)
  • Trusted locations versus untrusted locations
  • Multi-factor authentication (MFA) setup

Based on these device and context characteristics (and many more), you can restrict access to on-premises emails, cloud apps and services, and even VPN access.

Now, we're ready to look at the Access controls section of the policy.

主站蜘蛛池模板: 分宜县| 岳普湖县| 凤台县| 定陶县| 桐城市| 磐安县| 静乐县| 双江| 金阳县| 吴桥县| 靖边县| 湘潭市| 巴林右旗| 隆德县| 青岛市| 民丰县| 灵山县| 五大连池市| 靖江市| 福海县| 余干县| 泾源县| 苏尼特右旗| 贺州市| 德江县| 绍兴县| 夏邑县| 布尔津县| 山东省| 钟祥市| 疏勒县| 彭水| 甘南县| 洛宁县| 桃江县| 孟津县| 松原市| 德安县| 牙克石市| 西乌珠穆沁旗| 来安县|