Forum Discussion
Fahadgul3333
Aug 22, 2024Copper Contributor
We have multiple Licenses I want to Implement Conditional Access Policy
Hello Everyone, We have multiple Licenses I want to Implement Security on all users. I created a Group, added all Company users to this group, and assigned a P1 license to this group. ...
kyazaferr
Nov 19, 2024Steel Contributor
- License Requirements:
- Ensure that the group-based license assignment includes Azure AD Premium P1, as Conditional Access policies require it.
- User Provisioning Delays:
- There may be a short delay in policy enforcement right after a user is added to the excluded group. Test and account for this in operational procedures.
- Break-Glass Account:
- Always have an account excluded from all Conditional Access policies to prevent accidental lockout.
- Auditing and Monitoring:
- Use Sign-in logs in Azure AD to monitor blocked sign-ins and validate the policy's effectiveness.