logo

How to restrict Microsoft Azure access to specific IP addresses using Conditional Access

ID: e34b92ec-dc26-59ec-985d-696bc4865e32

STIX ID: report--e34b92ec-dc26-59ec-985d-696bc4865e32

Feed Name: ThreatLocker Blog

Date Published: 2026-05-11

Date Updated: 2026-05-11

...
...

### Executive summary This guide describes how to restrict access to the Azure management plane (portal, CLI, PowerShell, ARM API) by creating Named Locations and a Conditional Access policy in Microsoft Entra ID that blocks access from any IP not in the trusted list; it covers prerequisites, step-by-step configuration, validation in Report-only mode, and the importance of a break-glass account to prevent accidental admin lockout.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.