Configure Managed Browser
a month ago

Configure Managed Browser

Require users to access Microsoft Edge for Business resources only through managed browsers, ensuring that access is limited to trusted, compliant devices. By leveraging Microsoft Edge device signals, this feature verifies endpoint compliance before granting access to critical applications. You can then use the Managed Browser attribute within an Access Policy to enforce browser-based access controls.

Prerequisites

Before you configure managed browser access, ensure that both Entra ID administrators and end users meet the following prerequisites:

  1. Entra ID Administrators

    • Microsoft Edge administrator permissions in the Microsoft 365 Admin Center.

    • Edge Management Service is configured in the Microsoft Admin Center

  2. End Users

    • Microsoft Edge version 135.0.3179.85 or later is installed.

    • Devices run a supported operating system: Windows 10/11 or Windows Server 2016 or later.

Configure Edge for Business Device Trust Connector

To configure the connector, see Microsoft Edge for Business - Device Trust Connector RSA Ready Implementation Guide.

Configure the following settings to access the Microsoft Edge Trust Connector.

  1. Enable Edge for Business Device Trust Connector Configuration to configure Microsoft Edge for Business Device Trust Connector in Entra ID.

  2. In the Entra ID/ Tenant ID field, enter the Tenant ID from your Entra ID account.

  3. Select the Application Type from the dropdown list.

    1. Non- RSA Managed: When you select the Non-RSA Managed option, ensure completing the following steps: 

      1. Register a new Application within Entra ID, See Microsoft.

      2. In the Client ID field, enter the Client ID from your Entra ID application registration.

      3. In the Client secret field, enter the Client secret from your Entra ID application registration.

    2. RSA Managed: When you select the RSA Managed option, the Client Secret and Client ID fields are displayed automatically.

  4. Click Save to use the manged browser attribute within the access policy.