OneDrive - Allow sync only from compliant devices

StephanG 826 Reputation points
2024-12-05T19:09:46.9433333+00:00

Can someone help us please with this? https://learn.microsoft.com/en-us/sharepoint/enable-conditional-access

We get nowhere and it mentions our use case right there: "For example, you might require sync to be available only on domain-joined devices or devices that meet compliance as defined by the Mobile Device Management system (like Intune)." How can we achieve that?

We already: opend up a support case, tried Discord, tried X (former Twitter ;) ), set up a Dev Tenant and played around to find the right setting (very time consuming).

BR

Stephan

OneDrive
OneDrive
A Microsoft file hosting and synchronization service.
1,208 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
22,582 questions
0 comments No comments
{count} votes

3 answers

Sort by: Most helpful
  1. Jiajing Hua-MFST 12,240 Reputation points Microsoft Vendor
    2024-12-06T02:20:11.4333333+00:00

    Hi @StephanG

    Did the administrator set Require device to be marked as compliant (Microsoft Intune) within a Conditional Access policy to grant or block access to resources?

    For more information about compliance policies, see Set rules on devices to allow access to resources in your organization by using Intune.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.



  2. StephanG 826 Reputation points
    2024-12-12T07:26:36.99+00:00

    This will prohibit the usage of all Apps not only the Sync. We just want to achieve what is described in the article.
    We will try out the suggested CA policy - but it think it will also block the access for every app - not only the sync.

    0 comments No comments

  3. StephanG 826 Reputation points
    2024-12-12T09:17:14.5166667+00:00

    I created the CA - and it happend what had to happen ;) Opening Teams as a Guest User in our tenant
    User's image


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.