Restrict Access based on Disk Encryption Status with Conditional Access Policies
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
โ12-14-2022 05:15 PM
That's right! We've added Disk Encryption detection to our Conditional Access Policies!
Disk Encryption Condition for Conditional Access Policies
Many have been asking for more assertions around device posture when it comes to accessing corporate resources. In addition to restricting access to only corporate owned devices, we also want to assure those devices are secure with disk encryption. Now, as an administrator, you can block access to SSO applications or the User Portal from managed devices where disk encryption is disabled.
A few example usages:
- Block access to specific applications if encryption is not running.
- Block access to applications if the user is coming from a non-managed device or a managed device which is not running encryption.
- Allow access without MFA if the user is coming from a device which is encrypted, managed, and located within a trusted network.
Supported Resources
- SSO Applications
- User Portal
More Coming Soon
This is just a start. We are looking to add other device posture conditions such as OS Version, Anti-malware Running, Browser Version, and Firewall Running and more.
Read more about it in our Getting Started Guide for Conditional Access Policies.
![](/skins/images/C210B62239BAF37B0AB0FAEB086BB5F1/responsive_peak/images/icon_anonymous_message.png)
![](/skins/images/C210B62239BAF37B0AB0FAEB086BB5F1/responsive_peak/images/icon_anonymous_message.png)