MT.1017 - At least one Conditional Access policy is configured to enforce non persistent browser session for non-corporate devices.
Overview
Non persistent browser session conditional access policy can be helpful to minimize the risk of data leakage from a unmanaged device.
Learn more: https://aka.ms/CATemplatesBrowserSession
Test Metadata
| Field | Value |
|---|---|
| Test ID | MT.1017 |
| Severity | High |
| Suite | Maester |
| Category | CA |
| PowerShell test | Test-MtCaEnforceNonPersistentBrowserSession |
| Tags | CA, Maester, MT.1017 |
Source
- Pester test:
tests/Maester/Entra/Test-ConditionalAccessBaseline.Tests.ps1 - PowerShell source:
powershell/public/maester/entra/Test-MtCaEnforceNonPersistentBrowserSession.ps1