logo

ZTCA Configuration: Restrict GitHub Enterprise Cloud access to trusted IPs using Entra Conditional Access

ID: 4b1f4a69-8ddb-5f6e-b805-fa92235e7b7e

STIX ID: report--4b1f4a69-8ddb-5f6e-b805-fa92235e7b7e

Feed Name: ThreatLocker Blog

Date Published: 2026-06-16

Date Updated: 2026-06-16

...
...

This article is a step-by-step guide to restrict GitHub Enterprise Cloud sign-ins to trusted IP addresses using Microsoft Entra Conditional Access and Named Locations, covering account-type distinctions (Standard, EMU+OIDC, EMU+SAML), policy creation and validation in report-only mode, enforcement, and the recommendation to also enable GitHub's native IP allow list for full coverage.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.