Microsoft Entra ID
Conditional Access

Token Protection

In brief

The token protection article removes a screenshot of a Conditional Access policy requiring token protection as a session control. The Primary Refresh Token link remains.

What Entra admins need to know

This is a documentation presentation change; no administrator action or product behavior change is indicated.

This editorial summary was generated by AI from the documentation changes. Verify important details in the full Microsoft Learn article.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

For browser-based applications in preview, enforcement is supported for Azure Resource Manager, configured in Conditional Access as the Windows Azure Service Management API resource. Only selected web applications that access Azure Resource Manager are supported. For details, see Token Protection deployment guide - Web apps.

:::image type="content" source="media/concept-token-protection/complete-policy-components-session.png" alt-text="Screenshot of a Conditional Access policy that requires token protection as the session control.":::

Supported devices

Windows:

Related content

What is a Primary Refresh Token? \ No newline at end of file What is a Primary Refresh Token?

Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…