Microsoft recommended exclusion for customers that have blocked Service Providers via Conditional Access Policies. If you don't exclude Telstra from your conditional access policies we may not be able to support your environment or escalate issues to Microsoft.
1.1. Step-by-step guide
Identify which Conditional Access policy is blocking Telstra GDAP relationship.
N.B. Telstra has provided this general guidance without the knowledge of your existing policies. Changes to your policies should be made by an experienced conditional access individual or Microsoft support engineer.
- In a browser navigate to https://entra.microsoft.com. From the main screen select Conditional Access
2. From the main screen select Policies from the main menu select What if
3. On the What If page, under User or Workload identity, select No user or service principal selected and then choose the following settings:
1. Select identity type: User
2. Select: Guest or external users
3. Select: Service provider users
4. Select Organisation
- Click No Tenant selected.
- Enter the Tenant ID for Telstra Limited ec5dce88-eb67-4e15-9ebd-990c416a9823
- After a short validation click the tenant shown
- Click Select
- Select What If
4. The search results at the bottom of the Evalutation results page will list all the polices that will need to have the exclusion for Telstra CSP.
1.2. Step-by-step guide
The below process will grant Telstra access to your tenant for support and monitoring.
- In a browser navigate to https://entra.microsoft.com. From the main screen select Conditional Access
2. From the main screen select Policies, select one of the policies that you have recorded that you need to apply the exclusion.
3. Under the Assignments
4. Select identity type: Specific users included
1. Select Exclude
2. Select: Guest or external users
3. Select: Service provider users
4. Click Select
5. Click 0 Azure AD Organisations selected
4. Select Microsoft Entra Organisation
- Click Tenant ID.
- Enter the Tenant ID for Telstra Limited ec5dce88-eb67-4e15-9ebd-990c416a9823
- After a short validation click the tenant shown
- Click Select
- Click Save