mirror of
https://github.com/j0eyv/ConditionalAccessBaseline.git
synced 2026-09-28 18:35:38 +02:00
Update and rename CA005-Global-DataProtection-Office365-AnyPlatform-Unmanaged-RequireAppProtection.json to CA005-Global-DataProtection-Office365-iOSenAndroid-ClientApps-Unmanaged-AppEnforcedRestrictions.json
This commit is contained in:
BIN
Binary file not shown.
+162
@@ -0,0 +1,162 @@
|
|||||||
|
{
|
||||||
|
"@odata.context": "https://graph.microsoft.com/beta/$metadata#identity/conditionalAccess/policies/$entity",
|
||||||
|
"@odata.type": "#microsoft.graph.conditionalAccessPolicy",
|
||||||
|
"@odata.id": "identity/conditionalAccess/policies(\u00274192875f-8b4c-4bc6-b797-f7629f71c709\u0027)",
|
||||||
|
"@odata.editLink": "identity/conditionalAccess/policies(\u00274192875f-8b4c-4bc6-b797-f7629f71c709\u0027)",
|
||||||
|
"id": "4192875f-8b4c-4bc6-b797-f7629f71c709",
|
||||||
|
"templateId": null,
|
||||||
|
"displayName": "CA005-Global-DataProtection-Office365-iOSenAndroid-ClientApps-Unmanaged-AppEnforcedRestrictions",
|
||||||
|
"createdDateTime@odata.type": "#DateTimeOffset",
|
||||||
|
"createdDateTime": "2026-02-13T13:21:01.0192067Z",
|
||||||
|
"modifiedDateTime@odata.type": "#DateTimeOffset",
|
||||||
|
"modifiedDateTime": "2026-02-13T13:28:15.6527415Z",
|
||||||
|
"state@odata.type": "#microsoft.graph.conditionalAccessPolicyState",
|
||||||
|
"state": "enabled",
|
||||||
|
"deletedDateTime": null,
|
||||||
|
"partialEnablementStrategy": null,
|
||||||
|
"conditions": {
|
||||||
|
"@odata.type": "#microsoft.graph.conditionalAccessConditionSet",
|
||||||
|
"userRiskLevels@odata.type": "#Collection(microsoft.graph.riskLevel)",
|
||||||
|
"userRiskLevels": [
|
||||||
|
|
||||||
|
],
|
||||||
|
"signInRiskLevels@odata.type": "#Collection(microsoft.graph.riskLevel)",
|
||||||
|
"signInRiskLevels": [
|
||||||
|
|
||||||
|
],
|
||||||
|
"clientAppTypes@odata.type": "#Collection(microsoft.graph.conditionalAccessClientApp)",
|
||||||
|
"clientAppTypes": [
|
||||||
|
"browser",
|
||||||
|
"mobileAppsAndDesktopClients"
|
||||||
|
],
|
||||||
|
"locations": null,
|
||||||
|
"times": null,
|
||||||
|
"deviceStates": null,
|
||||||
|
"clientApplications": null,
|
||||||
|
"agents": null,
|
||||||
|
"applications": {
|
||||||
|
"@odata.type": "#microsoft.graph.conditionalAccessApplications",
|
||||||
|
"includeApplications@odata.type": "#Collection(String)",
|
||||||
|
"includeApplications": [
|
||||||
|
"Office365"
|
||||||
|
],
|
||||||
|
"excludeApplications@odata.type": "#Collection(String)",
|
||||||
|
"excludeApplications": [
|
||||||
|
|
||||||
|
],
|
||||||
|
"includeUserActions@odata.type": "#Collection(String)",
|
||||||
|
"includeUserActions": [
|
||||||
|
|
||||||
|
],
|
||||||
|
"includeAuthenticationContextClassReferences@odata.type": "#Collection(String)",
|
||||||
|
"includeAuthenticationContextClassReferences": [
|
||||||
|
|
||||||
|
],
|
||||||
|
"applicationFilter": null
|
||||||
|
},
|
||||||
|
"users": {
|
||||||
|
"@odata.type": "#microsoft.graph.conditionalAccessUsers",
|
||||||
|
"includeUsers@odata.type": "#Collection(String)",
|
||||||
|
"includeUsers": [
|
||||||
|
"All"
|
||||||
|
],
|
||||||
|
"excludeUsers@odata.type": "#Collection(String)",
|
||||||
|
"excludeUsers": [
|
||||||
|
|
||||||
|
],
|
||||||
|
"includeGroups@odata.type": "#Collection(String)",
|
||||||
|
"includeGroups": [
|
||||||
|
|
||||||
|
],
|
||||||
|
"excludeGroups@odata.type": "#Collection(String)",
|
||||||
|
"excludeGroups": [
|
||||||
|
"2802b872-ccfb-4b29-a9a9-459808dfb11b",
|
||||||
|
"20cd89e3-25e2-4fcd-82c5-de666dfd31a4"
|
||||||
|
],
|
||||||
|
"includeRoles@odata.type": "#Collection(String)",
|
||||||
|
"includeRoles": [
|
||||||
|
|
||||||
|
],
|
||||||
|
"excludeRoles@odata.type": "#Collection(String)",
|
||||||
|
"excludeRoles": [
|
||||||
|
|
||||||
|
],
|
||||||
|
"includeGuestsOrExternalUsers": null,
|
||||||
|
"excludeGuestsOrExternalUsers": null
|
||||||
|
},
|
||||||
|
"platforms": {
|
||||||
|
"@odata.type": "#microsoft.graph.conditionalAccessPlatforms",
|
||||||
|
"includePlatforms@odata.type": "#Collection(microsoft.graph.conditionalAccessDevicePlatform)",
|
||||||
|
"includePlatforms": [
|
||||||
|
"android",
|
||||||
|
"iOS"
|
||||||
|
],
|
||||||
|
"excludePlatforms@odata.type": "#Collection(microsoft.graph.conditionalAccessDevicePlatform)",
|
||||||
|
"excludePlatforms": [
|
||||||
|
|
||||||
|
]
|
||||||
|
},
|
||||||
|
"devices": {
|
||||||
|
"@odata.type": "#microsoft.graph.conditionalAccessDevices",
|
||||||
|
"includeDeviceStates@odata.type": "#Collection(String)",
|
||||||
|
"includeDeviceStates": [
|
||||||
|
|
||||||
|
],
|
||||||
|
"excludeDeviceStates@odata.type": "#Collection(String)",
|
||||||
|
"excludeDeviceStates": [
|
||||||
|
|
||||||
|
],
|
||||||
|
"includeDevices@odata.type": "#Collection(String)",
|
||||||
|
"includeDevices": [
|
||||||
|
|
||||||
|
],
|
||||||
|
"excludeDevices@odata.type": "#Collection(String)",
|
||||||
|
"excludeDevices": [
|
||||||
|
|
||||||
|
],
|
||||||
|
"deviceFilter": {
|
||||||
|
"@odata.type": "#microsoft.graph.conditionalAccessFilter",
|
||||||
|
"mode@odata.type": "#microsoft.graph.filterMode",
|
||||||
|
"mode": "exclude",
|
||||||
|
"rule": "device.isCompliant -eq True -and device.deviceOwnership -eq \"Company\""
|
||||||
|
}
|
||||||
|
}
|
||||||
|
},
|
||||||
|
"grantControls": {
|
||||||
|
"@odata.type": "#microsoft.graph.conditionalAccessGrantControls",
|
||||||
|
"operator": "OR",
|
||||||
|
"builtInControls@odata.type": "#Collection(microsoft.graph.conditionalAccessGrantControl)",
|
||||||
|
"builtInControls": [
|
||||||
|
"compliantApplication"
|
||||||
|
],
|
||||||
|
"customAuthenticationFactors@odata.type": "#Collection(String)",
|
||||||
|
"customAuthenticationFactors": [
|
||||||
|
|
||||||
|
],
|
||||||
|
"termsOfUse@odata.type": "#Collection(String)",
|
||||||
|
"termsOfUse": [
|
||||||
|
|
||||||
|
],
|
||||||
|
"authenticationStrength@odata.context": "https://graph.microsoft.com/beta/$metadata#identity/conditionalAccess/policies(\u00274192875f-8b4c-4bc6-b797-f7629f71c709\u0027)/grantControls/authenticationStrength/$entity",
|
||||||
|
"authenticationStrength@odata.associationLink": "https://graph.microsoft.com/beta/identity/conditionalAccess/policies(\u00274192875f-8b4c-4bc6-b797-f7629f71c709\u0027)/grantControls/authenticationStrength/$ref",
|
||||||
|
"authenticationStrength@odata.navigationLink": "https://graph.microsoft.com/beta/identity/conditionalAccess/policies(\u00274192875f-8b4c-4bc6-b797-f7629f71c709\u0027)/grantControls/authenticationStrength",
|
||||||
|
"authenticationStrength": null
|
||||||
|
},
|
||||||
|
"sessionControls": {
|
||||||
|
"@odata.type": "#microsoft.graph.conditionalAccessSessionControls",
|
||||||
|
"disableResilienceDefaults": null,
|
||||||
|
"cloudAppSecurity": null,
|
||||||
|
"signInFrequency": null,
|
||||||
|
"persistentBrowser": null,
|
||||||
|
"continuousAccessEvaluation": null,
|
||||||
|
"secureSignInSession": null,
|
||||||
|
"applicationEnforcedRestrictions": {
|
||||||
|
"@odata.type": "#microsoft.graph.applicationEnforcedRestrictionsSessionControl",
|
||||||
|
"isEnabled": true
|
||||||
|
}
|
||||||
|
},
|
||||||
|
"#microsoft.graph.restore": {
|
||||||
|
"title": "microsoft.graph.restore",
|
||||||
|
"target": "https://graph.microsoft.com/beta/identity/conditionalAccess/policies(\u00274192875f-8b4c-4bc6-b797-f7629f71c709\u0027)/microsoft.graph.restore"
|
||||||
|
}
|
||||||
|
}
|
||||||
Reference in New Issue
Block a user