Forum Discussion
MiSum83
Nov 30, 2021Brass Contributor
How to protect/restrict access to work emails in native email clients?
Hi all,
I'm starting with Intune and trying to figure out about how to restrict access or apply App policy to work emails when users already have their work account added to native email clients on their personal devices.
I've found a guide about how to FORCE users (via Conditional Access ) to use Outlook when adding their Online Exchange account to native app. However, canot find about how to protect the emails when users already have the account linked in theyr personal phones.
I've also configured App Proteciton Poilcy via Intune to restrict Copy/Paste, Saving, and other things, but it does not have any effect on the situation above.
What is the best way to do it?
- Hi
Nope... The native mail app isnt supported for app protection. so protection the data in it, isn't possible
- You must combine them... Use App Protection to protect the data in outlook... and a conditional access rule to require approved apps. (android native mail app isn't approved and also app protection doesnt work)
https://docs.microsoft.com/en-us/mem/intune/apps/apps-supported-intune-apps
So blocking access to make sure they need to start using outlook and use app protection on it... You have to start somewhere 😉- MiSum83Brass ContributorThank you for answer.... I've been testing it a bit furhter and when I applied App Protection and Conditional Access, it seems to be working like this:
-the native email client does not sync anymore with exchange so not receiving new emails
-I'm still able to do whatever I want with data from old work emails though
Is this the expected behaviour? I guess there is no chance apply App Protection policy to the older emails that were received in native email client (such as copy/paste, etc)?- Hi
Nope... The native mail app isnt supported for app protection. so protection the data in it, isn't possible