Forum Discussion

Urmindra Shukla's avatar
Urmindra Shukla
Copper Contributor
Sep 21, 2017
Solved

Detection and Blocking of concurrent access to O365 Account

How can we -

 

a. Restrict simultaneous login into O365 apps (Outlook, Sharepoint, etc) from 2 or different systems? 

or,

b. Detect in real time simultaneous login from different machines or locations?

 

Also, is there a way to prevent users from not configuring O365 Outlook to download emails from laptops/computers other than issued by company?

  • Conditional access offers controls based on location and other criteria.  Some of these features may require the Azure AD Premium add-on (also bundled with Enterprise Mobility + Security). 

     

    There are Location-Based Policies for SharePoint Online and OneDrive for Business with no additional costs for E3 licences:

     

    "Conditional access policies with SharePoint and OneDrive allow administrators define policies that provide contextual controls at the user, location, device, and app levels. These policies ensure content can only be accessed when someone is connected to the defined network, denying access outside of that boundary – whether the content is access via a browser, application, or mobile app."

     

    Further information - Conditional Access Policies with SharePoint Online and OneDrive for Business

     

    There are lots more options, for example for Exchange Online, which is at extra cost - Protect email access to Exchange Online and with Intune.  If you are new to conditional access, this is a good place to start - What's conditional access?

     

     

  • Cian Allner's avatar
    Cian Allner
    Silver Contributor

    Conditional access offers controls based on location and other criteria.  Some of these features may require the Azure AD Premium add-on (also bundled with Enterprise Mobility + Security). 

     

    There are Location-Based Policies for SharePoint Online and OneDrive for Business with no additional costs for E3 licences:

     

    "Conditional access policies with SharePoint and OneDrive allow administrators define policies that provide contextual controls at the user, location, device, and app levels. These policies ensure content can only be accessed when someone is connected to the defined network, denying access outside of that boundary – whether the content is access via a browser, application, or mobile app."

     

    Further information - Conditional Access Policies with SharePoint Online and OneDrive for Business

     

    There are lots more options, for example for Exchange Online, which is at extra cost - Protect email access to Exchange Online and with Intune.  If you are new to conditional access, this is a good place to start - What's conditional access?

     

     

    • Urmindra Shukla's avatar
      Urmindra Shukla
      Copper Contributor

      Thanks Cian. 

       

      As per my understanding i though conditional access with Intune was only for mobile devices and does not work with laptops or PC's. 

       

      Will go through this. Thanks anyways.

Resources