Forum Discussion

Serhat_88509's avatar
Serhat_88509
Icon for Nimbostratus rankNimbostratus
Oct 10, 2012

Only Allow OWA on the Corporate Authorized device

But only allow access to OWA from their corporate issued device such as laptop/ipad etc. And do not allow OWA from home computer, friends computer or hotels business center kiosk etc. Is this possible with the APM? In a nutshell we dont want users to open and download attachments to their home pc or hotels kiosks due to security reasons. Thanks

 

4 Replies

  • I bleieve the only way to identify them would be their name. Since all our devices and computers use the the site name in their name. Thanks

     

  • There is a number of ways you can do it. First, you have itemize the different types of devices that you want to authorize. I assume that you only have two types:

     

     

    Windows-based

     

    iOS-based

     

     

    For Windows-based devices, you can easily perform Windows Machine Info check to see if it is domain-joined, and if so, allow it through.

     

    For iOS, it's different. You essentially will have to identify each device by UDID, inspect and verify each device attempting to connect to make sure it is on the authorized list of UDIDs. Are you able to maintain that?
  • There is a number of ways you can do it. First, you have itemize the different types of devices that you want to authorize. I assume that you only have two types:

     

     

    Windows-based

     

    iOS-based

     

     

    For Windows-based devices, you can easily perform Windows Machine Info check to see if it is domain-joined, and if so, allow it through.

     

    For iOS, it's different. You essentially will have to identify each device by UDID, inspect and verify each device attempting to connect to make sure it is on the authorized list of UDIDs. Are you able to maintain that?