Baseline/CA018-Global-IdentityProtection-AnyApp-AnyPlatform-InsiderRisk-AdaptiveProtection.json

{
    "@odata.type": "#microsoft.graph.conditionalAccessPolicy",
    "displayName": "CA018-Global-IdentityProtection-AnyApp-AnyPlatform-InsiderRisk-AdaptiveProtection",
    "state": "enabledForReportingButNotEnforced",
    "conditions": {
        "@odata.type": "#microsoft.graph.conditionalAccessConditionSet",
        "userRiskLevels@odata.type": "#Collection(microsoft.graph.riskLevel)",
        "userRiskLevels": [],
        "signInRiskLevels@odata.type": "#Collection(microsoft.graph.riskLevel)",
        "signInRiskLevels": [],
        "insiderRiskLevels@odata.type": "#Collection(microsoft.graph.conditionalAccessInsiderRiskLevel)",
        "insiderRiskLevels": [
            "elevated",
            "moderate"
        ],
        "clientAppTypes@odata.type": "#Collection(microsoft.graph.conditionalAccessClientApp)",
        "clientAppTypes": [
            "all"
        ],
        "platforms": null,
        "locations": null,
        "times": null,
        "deviceStates": null,
        "devices": null,
        "clientApplications": null,
        "applications": {
            "@odata.type": "#microsoft.graph.conditionalAccessApplications",
            "includeApplications@odata.type": "#Collection(String)",
            "includeApplications": [
                "All"
            ],
            "excludeApplications@odata.type": "#Collection(String)",
            "excludeApplications": [],
            "includeUserActions@odata.type": "#Collection(String)",
            "includeUserActions": [],
            "includeAuthenticationContextClassReferences@odata.type": "#Collection(String)",
            "includeAuthenticationContextClassReferences": [],
            "applicationFilter": null
        },
        "users": {
            "@odata.type": "#microsoft.graph.conditionalAccessUsers",
            "includeUsers@odata.type": "#Collection(String)",
            "includeUsers": [
                "All"
            ],
            "excludeUsers@odata.type": "#Collection(String)",
            "excludeUsers": [],
            "includeGroups@odata.type": "#Collection(String)",
            "includeGroups": [],
            "excludeGroups@odata.type": "#Collection(String)",
            "excludeGroups": [],
            "includeRoles@odata.type": "#Collection(String)",
            "includeRoles": [],
            "excludeRoles@odata.type": "#Collection(String)",
            "excludeRoles": [],
            "includeGuestsOrExternalUsers": null,
            "excludeGuestsOrExternalUsers": null
        }
    },
    "grantControls": {
        "@odata.type": "#microsoft.graph.conditionalAccessGrantControls",
        "operator": "OR",
        "builtInControls@odata.type": "#Collection(microsoft.graph.conditionalAccessGrantControl)",
        "builtInControls": [
            "mfa"
        ],
        "customAuthenticationFactors": [],
        "termsOfUse": [],
        "authenticationStrength": null
    },
    "sessionControls": {
        "@odata.type": "#microsoft.graph.conditionalAccessSessionControls",
        "applicationEnforcedRestrictions": null,
        "cloudAppSecurity": null,
        "persistentBrowser": null,
        "signInFrequency": {
            "@odata.type": "#microsoft.graph.signInFrequencySessionControl",
            "isEnabled": true,
            "type": "everyTime",
            "value": null,
            "frequencyInterval": "timeBased",
            "authenticationType": "primaryAndSecondaryAuthentication"
        },
        "continuousAccessEvaluation": null,
        "disableResilienceDefaults": null,
        "secureSignInSession": null
    },
    "templateId": null
}