Troubleshoot: Conditional Access Policy Denials and Errors

Users are denied access by a Conditional Access Policy

When a Conditional Access Policy (CAP) denies a user’s access attempt. You have to correlate the denial using the user’s timestamp, username, and app name.

JumpCloud Conditional Access Policy now generates an Error ID for each  event where access is denied and displays it as part of the error message displayed to the user and includes the same ID in the corresponding DI event.

  1. Ask the user to copy the Error ID from the CAP denial screen.
  2. Log in to the JumpCloud Admin Portal.
  3. Go to Insights > Directory Insights. The Directory Insights page is displayed.
  4. Search Directory Insights using the same Error ID.
  5. Review the returned event.
Back to Top

Still Have Questions?

If you cannot find an answer to your question in our FAQ, you can always contact us.

Submit a Case