Перейти к содержимому

Microsoft Entra Zero Trust Lab | Conditional Access & Intune Device Compliance

Ajimoh Lot

0:00 / 0:00

Microsoft Entra Zero Trust Lab | Conditional Access & Intune Device Compliance

41 просмотр · 10 дней назад
Ajimoh Lot
7 подписчиков
41 просмотр · 10 дней назад
In this hands-on Zero Trust lab, I combined Microsoft Entra Conditional Access with Microsoft Intune device compliance to control access to company resources based on the security state of a Windows 11 device. I started by configuring and verifying the compliance requirements for my Windows 11 client. With the device compliant, I enabled a Conditional Access policy requiring a compliant device and verified that the user could successfully access the protected resource. I then introduced a controlled compliance failure by temporarily raising the minimum operating system version above the version installed on the client. After Intune reevaluated the device, it became noncompliant and Conditional Access blocked the user's access to company resources. I investigated the failure using Intune compliance reporting, Company Portal and Microsoft Entra sign-in logs, identified the failed compliance requirement, restored the correct operating system requirement and allowed the device to reevaluate. Once the device returned to a compliant state, I verified that the user's access was successfully restored. In this video, I demonstrated: Configuring Windows device compliance requirements in Intune Verifying device compliance and per-setting status Configuring Conditional Access to require a compliant device Testing the policy with the Conditional Access What If tool Verifying real user access from a compliant device Introducing a controlled device compliance failure Verifying a noncompliant device in Intune Checking the compliance failure through Company Portal Verifying Conditional Access blocked the noncompliant device Investigating the result through Entra sign-in logs Remediating the compliance issue Verifying that device compliance was restored Confirming that user access was restored This was Video 5 and the final part of my Microsoft Entra ID & Intune Zero Trust Security Lab. The project demonstrated how identity and endpoint security controls can work together under a Zero Trust model, where successful authentication alone is not enough — the device must also meet the security requirements defined by the organization. 📂 Full project documentation and screenshots: https://github.com/ajimohlot/Entra-In... ▶️ Full project playlist:    • Microsoft Entra ID & Intune Zero Trust Sec...   Previous videos: Video 1 – Microsoft Entra Conditional Access: Watch Video 1 Video 2 – Microsoft Entra Authentication Security: Watch Video 2 Video 3 – Microsoft Intune Endpoint Security: Watch Video 3 Video 4 – Microsoft Intune BitLocker: Watch Video 4 #MicrosoftEntra #MicrosoftIntune #ZeroTrust #ConditionalAccess #DeviceCompliance #EndpointSecurity #Cybersecurity #Microsoft365 #Windows11 #HomeLab