Skip to content

Microsoft docs

Alexander Filipin edited this page Dec 2, 2020 · 8 revisions

Plan a Conditional Access deployment

Create a resilient access control management strategy with Azure Active Directory

  • Apply CA policies to every app
  • Minimize the number of CA policies
  • Set up emergency access accounts
  • Set up report-only mode
  • Plan for disruption
  • Set naming standards for your policies
  • Exclude countries from which you never expect a sign-in.
  • Require MFA
  • Respond to potentially compromised accounts
  • Require managed devices
  • Require approved client applications
  • Block access

Five steps to securing your identity infrastructure: Step 3 - Automate threat response

How To: Configure and enable risk policies

Identity and device access configurations: Applying these capabilities across the three tiers of protection

Common identity and device access policies

What you should avoid doing