Forum Discussion
Block download in Teams (Windows 10 application)
Hi rajatm , In your suggestion below can you explain how i create an CAS policy to block native apps and force users to use the Web app "CAS access policy to block desktop/native apps (and force users to web-apps) and a CAS session policy to block/control downloads in these web-app sessions."
I have an access control policy for native client as follows:
ACCESS POLICY
Device+ tag+ does not equal =Intune Compliant , Hybrid Compliant.
App=Microsoft teams
User Agent tag =Native Client
USer +NAme = (User)
Session Policy
- Control file downloads with Inspection
app=Microsoft teams
USer +Name =(User)
Device+tag=HybridAzure Ad joined,Intune compliant
cant seem to get users on a Non Supported device be stopped from downloading files from teams.
hello gd2020 , you should add a 'client app' == 'Mobile or desktop' filter to the access policy. without this filter, access policies only apply to browsers. this is documented at: https://docs.microsoft.com/en-us/cloud-app-security/proxy-intro-aad#access-controls . this access policy should then block users from being able to sign-in to the Teams desktop app.