Steps: Set Up Microsoft Conditional Access Policy
You can require mobile users to access Workday from devices that are compliant with a
Conditional Access policy, requiring them to install Workday for Android, iPad, and
iPhone through the Microsoft Intune Company Portal.
- Access theEdit Tenant Setup - Securitytask.Select theEnable Mobile Browser SSO for Native Appscheck box.Security:Set Up: Tenant Setup - Securitydomain in the System functional area.
- Set up Azure Active Directory.
- In Microsoft Intune, add Workday for Android as an Android Enterprise system app and Workday for iOS as an iOS Store app.
- Addcom.workday.workdroidappas the package name for Android.
- Addcom.workday.workdayappas the package name for iOS.
- Set up a Conditional Access policy.When you grant access controls, don't enable approved client apps and app protection policies.
- (iPad and iPhone only) In your device compliance policies, addcom.workday.workdayappto the list of restricted apps.
In Microsoft Intune, you can customize mobile device management settings with JSON
values for Android and XML values for iPad and iPhone.
For configuration file examples, see Reference: Mobile Device Management.