Forum Discussion
This website is blocked by your organisation
I am experiencing the above error message upon lunch of any office app url, see screenshot attached.
Network trace shows blocked by MCAS but I am unable to find where to unblock or why it is been triggered in the first place
6 Replies
Dear John Gruber RyanSteele-CoV Jack36
Thank you for your help.
The issue is the web content filtering and windows smart screen not sure who activated it and added some urls to it.
https://learn.microsoft.com/en-us/defender-endpoint/indicators-overview#ipurldomain-indicators
https://learn.microsoft.com/en-us/defender-endpoint/web-content-filtering
- Jack36Copper Contributor
It seems like a sync issue between Microsoft Edge SmartScreen and Microsoft Defender for Cloud Apps (MCAS). Sometimes, local security updates change how SmartScreen interprets unsanctioned tags, even if they aren't visible in the dashboard. Have you checked if there are any specific 'Network Protection' events in the local Windows Event Viewer? This might clarify if it's a policy push or a standalone update issue.
- RyanSteele-CoVSteel Contributor
Just to be clear: if you navigate to https://security.microsoft.com/cloudapps/app-catalog?tag=eq(Unsanctioned%2C) , you don't see "Microsoft Word Online" in the list?
There was an issue recently (DZ1231199) which, for us at least, resulted in a number of apps being unexpectedly tagged as "Unsanctioned" and blocked in Edge. Even once the issue was supposedly resolved, we had to manually remove the tags from the apps to restore access.
yes RyanSteele-CoV I don't see "Microsoft Word Online" in the list. it also affects some other websites
Thank you John Gruber I have checked those places, I was not able to see any trace of it, however my research and troubleshooting led me to the smartscreen for Microsoft Edge feature in windows security. when I turn it on it happens, when I turn it off it stops. the question is what changed? how and why is the behavior like this? was there an update? is this linked to MCAS?
- John GruberIron Contributor
Two places I can think of:
- Defender for admin center > system > settings > endpoints > web content filtering > check for policies here
- Defender for admin center > Cloud Apps > Cloud app catalog > Find the app > click sanction