Restrict Microsoft 365 access to a specific IP address using Conditional Access
ID: f656e5d6-079c-58ce-a27f-c6146a10cfc1
STIX ID: report--f656e5d6-079c-58ce-a27f-c6146a10cfc1
Feed Name: ThreatLocker Blog
This step-by-step guide explains how to restrict Microsoft 365 access to a single public IP by creating a **named location** in Microsoft Entra and enforcing it with a **Conditional Access policy**; it covers prerequisites (licenses and admin roles), creating the named IP location, configuring the policy (target users/groups and all cloud apps), excluding emergency admin accounts, setting location conditions to exclude the trusted IP, configuring grant controls to block sign-ins from other locations, and enabling the policy (or using Report-only for testing).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
