# Which Identity and Access Management systems enforce conditional access blocking logins from untrusted geographic locations?

<p class="elv-tracking-normal elv-text-default elv-font-figtree elv-text-base elv-leading-base elv-font-normal" elv="true">Hey G2 users, a security architect trying to stop a credential-stuffing attack from an unexpected country is precisely the problem conditional access inside <a class="a a--md" elv="true" href="https://www.g2.com/categories/identity-and-access-management-iam">Identity and Access Management (IAM) systems</a> is meant to solve.</p><ul>
<li>
<a class="a a--md" elv="true" href="https://www.g2.com/products/microsoft-entra-id/reviews"><strong>Microsoft Entra ID</strong></a><strong>:</strong> Conditional Access policies are a named, core feature, built specifically to enforce adaptive access rules, including geographic restrictions.</li>
<li>
<a class="a a--md" elv="true" href="https://www.g2.com/products/okta/reviews"><strong>Okta</strong></a><strong>:</strong> Authentication and authorization capabilities include context-aware access rules, designed to detect anomalous login locations before they lead to compromise.</li>
<li>
<a class="a a--md" elv="true" href="https://www.g2.com/products/cisco-duo/reviews"><strong>Cisco Duo</strong></a><strong>:</strong> Pulls identity visibility and context from multiple sources, giving conditional access decisions more signal than location data alone.</li>
<li>
<a class="a a--md" elv="true" href="https://www.g2.com/products/jumpcloud/reviews"><strong>JumpCloud</strong></a><strong>:</strong> Unifies identity and device management, giving IT complete control over every access point, including the actual source of a login.</li>
<li>
<a class="a a--md" elv="true" href="https://www.g2.com/products/rippling-it/reviews"><strong>Rippling IT</strong></a><strong>:</strong> Real-time monitoring and least-privilege controls extend to access location as a risk signal feeding automated policy enforcement.</li>
</ul><p class="elv-tracking-normal elv-text-default elv-font-figtree elv-text-base elv-leading-base elv-font-normal" elv="true">For teams that turned on geographic blocking, did it actually stop real attack attempts, or mostly just add friction for legitimate employees traveling?</p>

##### Post Metadata
- Posted at: 20 days ago
- Author title: Writer
- Net upvotes: 1


## Comments
### Comment 1

&lt;p&gt;I’d watch how often legitimate travel gets caught by the same policy. Geographic blocking is useful, but the stronger setup probably combines location with device trust, MFA, and user risk so unusual travel doesn’t create unnecessary lockouts.&lt;/p&gt;

##### Comment Metadata
- Posted at: 19 days ago
- Author title: Marketer





## Related discussions
- [How well does Trello scale into a larger team?](https://www.g2.com/discussions/1-how-well-does-trello-scale-into-a-larger-team)
  - Posted at: over 13 years ago
  - Comments: 6
- [Can we please add a new section](https://www.g2.com/discussions/2-can-we-please-add-a-new-section)
  - Posted at: over 13 years ago
  - Comments: 0
- [Quantifiable benefits from implementing your CRM](https://www.g2.com/discussions/quantifiable-benefits-from-implementing-your-crm)
  - Posted at: over 13 years ago
  - Comments: 4


