# Azure (Office 365)

## Prerequisites

* **Assigned roles**: Conditional Access Administrator and Security Administrator
* **Licence**: Microsoft Entra ID P1 or P2

## Step 1

In Azure go to **Conditional access** > **Named locations** > **IP ranges location**.

* Set **Name** + GoodAccess Gateway I&#x50;**/32** (example: 11.22.33.44/32)
* Check **Mark as trusted location** and **Create**

![](https://418253935-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FiJ406Lpi9EKoWDi7GFL7%2Fuploads%2FHUF9qBdpqht5mRKOde5u%2FIP%20whitelisting%20guides%20-%20Azure%20\(Office%20365\)_1.PNG?alt=media\&token=dd342371-eddd-46e5-b4c3-ea9e90024c70)

## Step 2

Go to **Policies** > **New Policy**

Choose your **New location** and specify who will have access.

<div><img src="https://418253935-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FiJ406Lpi9EKoWDi7GFL7%2Fuploads%2FQxlLLu0zXNqq2CtTkka8%2FIP%20whitelisting%20guides%20-%20Azure%20(Office%20365)_2.PNG?alt=media&#x26;token=0692be29-0d97-4dba-9810-ded40f2cb9db" alt=""> <figure><img src="https://418253935-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FiJ406Lpi9EKoWDi7GFL7%2Fuploads%2FUfz6upyDRRrK7gKFaHj6%2FIP%20whitelisting%20guides%20-%20Azure%20(Office%20365)_3.PNG?alt=media&#x26;token=41ede99c-c554-4eeb-897e-7bbc09325c8f" alt=""><figcaption></figcaption></figure></div>

## Step 3

Switch to **Cloud apps or actions** and set restrictions.

<figure><img src="https://418253935-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FiJ406Lpi9EKoWDi7GFL7%2Fuploads%2FwcPhWjAhoaSzIJrAhudS%2FIP%20whitelisting%20guides%20-%20Azure%20(Office%20365)_4.PNG?alt=media&#x26;token=9b786093-5fe8-4e42-984d-007930d751ac" alt=""><figcaption></figcaption></figure>

## Step 4

Open **Conditions** > **Locations** > **Switch Configure** to **Yes**.

* **Include** - Any location
* **Exclude** - Selected locations

<div><img src="https://418253935-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FiJ406Lpi9EKoWDi7GFL7%2Fuploads%2F453yWoXo6VPsQ4UqiQ8b%2FIP%20whitelisting%20guides%20-%20Azure%20(Office%20365)_5.PNG?alt=media&#x26;token=49703019-5129-45ca-82cd-9045dd8a8261" alt=""> <figure><img src="https://418253935-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FiJ406Lpi9EKoWDi7GFL7%2Fuploads%2ForxWoV6xsyeVO247FGxX%2FIP%20whitelisting%20guides%20-%20Azure%20(Office%20365)_6.PNG?alt=media&#x26;token=15ef664a-cac4-4aee-a6ef-8ef05282c196" alt=""><figcaption></figcaption></figure></div>

## **Step 5**

Continue to **Grant**, choose **Block access** and **confirm** with **Select.**

Don't forget to set **Enable policy** to **On** before saving the configuration.

<figure><img src="https://418253935-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FiJ406Lpi9EKoWDi7GFL7%2Fuploads%2FeJ2Nt0LjgbyNitkvDWN2%2FIP%20whitelisting%20guides%20-%20Azure%20(Office%20365)_7.PNG?alt=media&#x26;token=d989ac0a-2cd7-41f7-9fb2-54895790ceda" alt=""><figcaption></figcaption></figure>
