Remediation
From Azure Portal
- From Azure Home open the Portal Menu in top left, and select Microsoft Entra ID.
- Select
Security. - Select
Conditional Access. - Select
Policies. - Click
+ New policy. - Enter a name for the policy.
- Click the blue text under
Users. - Select
Select users and groups. - Select administrative groups this policy should apply to and click
Select. - Under
Exclude, checkUsers and groups. - Select users this policy not should apply to and click
Select. - Click the blue text under
Target resources. - Select
All cloud apps. - Click the blue text under
Grant. - Under Grant access, check
Require multifactor authenticationand clickSelect. - Set
Enable policytoReport-only. - Click
Create.
After testing the policy in report-only mode, update the Enable policy setting from Report-only to On.