Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Gaurav_Pandya
Advisor
Jump to solution

Access role - azure idp with mobile access application

Hi,

We are using unified policy for mobile access VPN. We are restricting users with specific IPs by using mobile access native application.

Recently we implemented azure IDP and trying to use access role with azure IDP but policy installation failed and getting error "MAB applications and Access Roles with AzureAD entities cannot be used in the same rule". As per sk171557, we cannot do that.

 

My question is how I can restrict user with specific IPs by using mobile access application and access role (Azure IDP). Or is there any other way?

0 Kudos
1 Solution

Accepted Solutions
PhoneBoy
Admin
Admin

Try using an inline layer.
The top-level rule would contain the MAB application (and IP restriction), the rule(s) in the inline layer would contain the Access Roles with a "drop all" as the cleanup rule for that layer.

View solution in original post

0 Kudos
2 Replies
PhoneBoy
Admin
Admin

Try using an inline layer.
The top-level rule would contain the MAB application (and IP restriction), the rule(s) in the inline layer would contain the Access Roles with a "drop all" as the cleanup rule for that layer.

0 Kudos
Gaurav_Pandya
Advisor

That worked.. Thanks

0 Kudos