I've been playing with the entra id splash page login. This is good as it means we can offload a certain amount of our security to a process we and our already already use. And we wouldn't need to push a wifi profile with a set password.
I've noticed a limitation and I can't decide on the best way forward - users can sign up personal devices without issue.
We would like to bar users from signing in with their own devices (ie personal laptops, mobile phones) and I can't see a way to do this. Users should use a separate guest network for personal devices.
- From Meraki we have:
- MR enterprise licensing and an MX (plus switching) but we're not using SM.
- From Microsoft we have
- Office 365 E5 with mobility and security
- Entra ID P2 licenses.
In other words I have Intune, Full Entra with Conditional access.
I'm just wondering what others have done. Did you use a Conditional Access policy? And if so how did you set that up?