You can integrate Omnissa Workspace ONE UEM with compliance partners such as Microsoft and Google, enabling you to use UEM device data, such as management status and device compliance status, to create policies allowing conditional access to apps and content. These integrations allow you to set different conditional access policies for individual applications.
Conditional Access applies only to fully managed, MDM‑enrolled devices. Devices that are only app‑registered or Hub‑registered are not supported. Workspace ONE UEM policies determine compliance. These policies include operating system requirements, security settings, encryption status, and custom rules.
To participate in Conditional Access, devices must be registered with the identity provider through Workspace ONE Intelligent Hub or other supported registration flows. Registration can occur proactively through self‑service, or dynamically when users attempt to access protected resources and are redirected for remediation.
Workspace ONE UEM provides visibility into Conditional Access operations through device status indicators, logs, and events. You can monitor registration status, track compliance updates shared with identity providers, and troubleshoot access issues using built-in logs. Conditional Access integrations also support operations such as tenant updates, re‑synchronization of device data, and full deactivation when required.
Was this page helpful?