home

Mobile Endpoint Security

Lookout Product Documentation

Find answers about using and optimizing Lookout products.

Creating and Assigning a Conditional Access Policy in Intune

Marking a device as non-compliant has no impact on a user’s access unless devices are also checked for compliance as part of a Conditional Access Policy. You can modify your existing policy, or create a new one:

  1. Log in to the Microsoft Intune admin center.
  2. In the left sidebar menu, click Devices.
  3. In the Devices blade, under Policy, click Conditional access.
  4. Click + New policy.
  5. Modify the Assignments section to include the desired User Groups.
  6. Your exact settings will vary based on the needs of your organization, but to control access based on device compliance status:
    1. Under Access controls, click Grant.
    2. Check Require device to be marked as compliant and click Select.

      This causes the policy to grant access only when the condition is met. Users with

      non-compliant devices will not have access.



      For additional information, see https://docs.microsoft.com/en-us/intune/conditional-access.