Exchange Enterprise Application is adressable as Resource in Conditional Access
AnsweredHello,
in Microsoft Entra Portal (https://entra.microsoft.com) exist the Point "Conditional Access" (CA).

With it is possible to restrict Access to the Microsoft Tenant after some Rules (Policies).
Here you can also Address Enterprise Applications too, which are used for the Modern Authentication in B1UP P&D.
But currently we have the Problem that we can't Address in the Conditional Access Policy this Enterprise Application für B1UP P&D as Ressource and so not Exclude only this Enterprise Applications from some Rules.

Because of that we have to soften our current Conditional Acess Rules that the E-Mail sending via Exchange Online works from our SAP Business One Hoster. This could lead to a security issue which could be avoided/reduced if we can address directly the Enterprise Application which is needed for B1UP P&D.
That an Enterprise Application can be used as a Ressource in Conditional Access, what I found, some requirements are necessary that it can be adressed.
I think, I don't know exactly, the problem in this case is that the Enterprise Application is created from Type "Mobile and desktop applications". If the Enterprise Applications would be from Type "Web applications" (Web, Single-page application) it should be possible to adress it in Condidtional Access.
Maybe B1UP P&D can be amended that an Enterprise Application from Type "Web applications" can be used for Authentication.
-
Thank you for your request. It has been scheduled for review by the development team that will get back to you should there be questions.
(Please note that as we are user-driven we can't guarantee that your request will be met unless it gets many votes and/or fit the product vision)
Read more about the Feature Request process here
[Internal Id: 156921]
Please sign in to leave a comment.
Comments
1 comment