Skip to content

At least one Conditional Access policy is configured to block access for unknown or unsupported device platforms

Why This Matters

Unknown or unsupported device platforms bypass security baselines and can introduce risk from unmanaged devices accessing corporate resources. Without a block policy for these platforms, attackers may exploit gaps in device trust requirements. Enforcing a block ensures only recognized platforms are allowed, reducing the attack surface.

What Aether365 Checks

This check verifies that at least one Conditional Access policy is configured to block access for unknown or unsupported device platforms in your Microsoft 365 tenant. It appears in the Aether365 dashboard under the microsoft-365 service checks with severity Medium.

Microsoft references

Was this page helpful?