Forum Discussion
Outlook message encryption - avoid delegate access
https://docs.microsoft.com/en-us/microsoft-365/compliance/ome-faq?view=o365-worldwide#is-delegated-access-supported-with-opening-encrypted-messages--even-if-a-delegate-has-full-access-to-another-user-s-mailbox-
ChristianJBergstrom thanks for your quick answer.
If I understand you well, OME don´t have a solution for this use case, right?
To somehow block all except Outlook Windows dont think it is a good idea.
It will be challeging to assure never get access..
Maybe there is a way via Powershell?
Question is if it is possible...
Thanks a lot anyway 🙂
- TonyRedmondOct 17, 2021MVPOME isn't really designed to handle complex access situations. If I were you. I'd consider using a sensitivity label that restricts access to a limited set of reciipients.
- Oct 17, 2021
Agreed, but if going down that road it needs some structure and planning incl. people from your business (to classify and protect). I.e. the very opposite from the easy to use built-in encryption with OME josecachairo
- josecachairoOct 18, 2021Copper Contributor
hi all,
meanwhile we tested and indeed delegates CAN´T read encrypted emails. So it is working as we expected and Microsoft information is confusing (not clear enough) to this matter.
So if you use OME, delegate can´t not read those emails (encrypt only).
I recommend you to test it also in iOS, Android to be sure.
- Aug 06, 2021You’re correct. OME cannot accomplish what you’re looking for. There used to be a MIP UserVoice request for this scenario, but as Microsoft has closed down UV for this and other products I don’t know what has happened to it. Sorry..
- BHartNLOct 15, 2021Copper Contributor
iOS and Android allow opening an encrypted message of a delegated mailbox. Any way to disable this similar to disabling access to OWA?
- Oct 16, 2021Don't know really, not within my field so to speak.
"Is delegated access supported with opening encrypted messages? Even if a delegate has full access to another user's mailbox?
- Delegated access of encrypted mail is supported in Outlook on the web, Outlook for Mac, Outlook for iOS, and Outlook for Android. Outlook for Windows does not support delegated access."
https://docs.microsoft.com/en-us/microsoft-365/compliance/ome-faq?view=o365-worldwide#is-delegated-access-supported-with-opening-encrypted-messages--even-if-a-delegate-has-full-access-to-another-user-s-mailbox-