Mac OS accessing restricted application

J-3804 1,566 Reputation points
2023-07-27T23:03:02.6666667+00:00

Hey team,

We have setup a policy to allow devices to access some applications and sites but we noticed that MAC OS users are now able to access restricted and unrestricted applications and sites.

Can you please provide us with steps to prevent Mac users from accessing restricted applications and sites

NB: Mac devices are not Azure joined

Thank you for your help

Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,665 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,352 questions
0 comments No comments
{count} votes

Accepted answer
  1. Simon Ren-MSFT 31,756 Reputation points Microsoft Vendor
    2023-07-28T09:08:25.2466667+00:00

    Hi,

    Thank you for posting in Microsoft Q&A forum.

    If you want to prevent Mac users from accessing restricted applications and sites, you can achieve this by setting up a Conditional Access policy, even if the Mac devices are not Azure AD joined. Please refer to:

    Use app-based Conditional Access policies with Intune

    Create a device-based Conditional Access policy

    Once the policy is created and enabled, Mac users (or the selected users/groups) will be blocked from accessing the restricted applications and sites based on the conditions you've set. When they attempt to access those resources, they will be denied access and receive an appropriate message.

    Please note that for Conditional Access policies to work effectively, the targeted applications and resources need to be integrated with Azure AD. Additionally, it's important to thoroughly test the policy and its impact on various user scenarios before applying it broadly.

    Thanks for your time. Have a nice day!

    Best regards,

    Simon


    If the response is helpful, please click "Accept Answer" and upvote it.

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments

0 additional answers

Sort by: Most helpful