Skip to main content
Administrator Guide
Last Updated: 2023-06-23
Steps: Set Up Microsoft Conditional Access Policy

Steps: Set Up Microsoft Conditional Access Policy

You can require mobile users to access Workday from devices that are compliant with a Conditional Access policy, requiring them to install Workday for Android, iPad, and iPhone through the Microsoft Intune Company Portal.
  1. Access the
    Edit Tenant Setup - Security
    task.
    Select the
    Enable Mobile Browser SSO for Native Apps
    check box.
    Security:
    Set Up: Tenant Setup - Security
    domain in the System functional area.
  2. In Microsoft Intune, add Workday for Android as an Android Enterprise system app and Workday for iOS as an iOS Store app.
    • Add
      com.workday.workdroidapp
      as the package name for Android.
    • Add
      com.workday.workdayapp
      as the package name for iOS.
  3. Set up a Conditional Access policy.
    When you grant access controls, don't enable approved client apps and app protection policies.
  4. (iPad and iPhone only) In your device compliance policies, add
    com.workday.workdayapp
    to the list of restricted apps.
In Microsoft Intune, you can customize mobile device management settings with JSON values for Android and XML values for iPad and iPhone.
For configuration file examples, see Reference: Mobile Device Management.