Exclude Conditional Access Policy on SharePoint Online for external users
The option to apply Conditional Access Policies (CAS) on SharePoint Online is a great relief. This will definitely help assure access to our user base is only from defined IP ranges. We leverage TeamSites predominantly for internal collaboration (98%) and we also use TeamSites for external sharing for collaboration (2%) with our vendors.
We would like to leverage CAS for our internal users so that they access the content only from intranet. If we leverage CAS - it will prevent external users from accessing our tenant. How can we we best use both the offering i.e External Sharing and Conditional Access Policies.
Is there an option to exclude External users from not going through the CAS check / validation.

2 comments
-
Anonymous commented
This would be an incredibly useful feature for us too. Currently we have conditional access locked down throughout so that only 'compliant' InTune devices can access O365 data outside of our corporate network but I will shortly need to start allowing a small subset of Guest Users access to SharePoint Online sites without being tripped up by conditional access.
-
Mukesh commented
Has this been addressed yet ? We come across similar issues after enabled CA for SPO and then had to turn this back off as our OneDrive is meant for external sharing as well.