Skip to Content
Communication Square LLC Help Center

How to Apply Conditional Access with Intune?

Written May 2018. Microsoft changes these admin screens often, so the screenshots below may not match what you see today. The sequence of steps is usually still correct — if something looks wrong, tell us and we'll update it.
  1. Within the Microsoft Azure Portal, navigate to Intune > Conditional accessScreenshot no longer available from its original source.
  2. Click Policies and click the “+ New policy” button.Screenshot no longer available from its original source.
  3. Give the new policy a name. For this blog I will give it the name : CA-ExchangeOnline-ModernApps
  4. Under Assignment click Users and groups and select an Azure AD security group if you want to apply this policy to a selected group of users (optional). All users is also an option. Click DoneScreenshot no longer available from its original source.
  5. Click on Cloud apps, click Select apps en search for Office 365 Exchange Online. Click on Select and Done
  6. Select Conditions, and then choose for Client apps. On the right hand side click Select client apps and select both Browser and Mobile apps and desktop clients. Click Done twice.Screenshot no longer available from its original source.
  7. Under Access controls select Grant. On the right hand side of the screen click Grant access and select Require device to be marked as compliant. Click on Select in the bottom of the screen.Screenshot no longer available from its original source.
  8. Make sure that Enable policy is set to On and click on Create

Last updated on