Conditional Access and Microsoft Authenticator Sign In

Anon4343 451 Reputation points
2024-05-08T16:01:01.7766667+00:00

We're using conditional access policy to restrict access to 'Register security information' to trusted locations only. This policy blocks home users from signing into the Microsoft Authenticator. How are you handling this security recommendation?

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,947 questions
0 comments No comments
{count} votes

Accepted answer
  1. Navya 4,860 Reputation points Microsoft Vendor
    2024-05-17T09:14:06.1266667+00:00

    Hi @Anon4343

    I'm glad that you were able to resolve your issue and thank you for posting your solution so that others experiencing the same thing can easily reference this! Since the Microsoft Q&A community has a policy that "The question author cannot accept their own answer. They can only accept answers by others ", I'll repost your solution in case you'd like to "Accept " the answer.

    Issue:

    Conditional access policy to restrict access to 'Register security information' to trusted locations only. This policy blocks home users from signing into the Microsoft Authenticator.

    Solution:

    TAP does not override conditional access policies. It's only a substitute for MFA challenges. On the conditional access policy, we had to create an exclusion security group and temporarily add the user to that group. After the user signed into the Authenticator, we removed the user from the security group.

    If I missed anything please let me know and I'd be happy to add it to my answer, or feel free to comment below with any additional information.

    I hope this helps! Thank you again for your time and patience throughout this issue.

    Please remember to "Accept Answer" if any answer/reply helped, so that others in the community facing similar issues can easily find the solution.

    Thanks,

    Navya.

    0 comments No comments

1 additional answer

Sort by: Most helpful
  1. Andy David - MVP 142.9K Reputation points MVP
    2024-05-08T16:32:12.8433333+00:00