The customer configured SSO using Azure AD and it works well for the client. When login in with the FSM Android mobile which runs on the Android Work Profile and is managed by Intune, it doesn't work. The user is able to go to the Azure AD login page and provide the password, which is accepted, but then a new dialog is prompted saying: "Are you trying to sign in to …? Only continue if you downloaded the app from a store or website that you trust”. When one clicks on continue, it says: "Action Blocked: this action is not allowed by your organization.”
The customer believes this happens because this is not a managed app (integrated with the Intune SDK). I think it could also be something that is configured on the Azure Ad that can be changed, so it “trusts” the app and doesn't go through the whole "are you trying to sign in...”. Any ideas? Integrating the App with the Intune SDK sounds like a large amount of work and could also break things.