For an overview of my recommended set of Conditional Access policies see: Conditional Access demystified: My recommended default set of policies Therefore you must make sure that your browsers are configured correctly before you implement the Conditional Access policy.
The reason I’m doing a more specific article on the subject is because I see a lot of issues when it comes to browser configuration which must be solved if you want to implement Conditional Access and use compliance as a way to grant access the environment.Įven though you are working in the browser on a compliant device, doesn’t necessarily mean that Azure AD can detect that. This article is about a subject I covered before in my blogpost titled: “ Understanding and governing reauthentication settings in Azure Active Directory“.