Forum Discussion
Safe Links : Disable scanning for internal url's in Teams
- Dec 15, 2023
Hi lyncer2013,
yes, regarding the Microsoft documentation, the recognition of internal domains in Safe Links policies for Microsoft Teams and Office web apps may not be as straightforward as whitelisting.
Reporting the issue and requesting to add the internal domain through https://security.microsoft.com/reportsubmission can be a workaround.Please click Mark as Best Response & Like if my post helped you to solve your issue.
This will help others to find the correct solution easily. It also closes the item.If the post was useful in other ways, please consider giving it Like.
Kindest regards,
Leon Pavesic
(LinkedIn)
Hi lyncer2013,
Safe Links in Microsoft Defender for Office 365 offers URL scanning and rewriting for inbound email messages, along with time-of-click verification of URLs in emails, Teams, and supported Office 365 apps.
To ensure internal URLs aren’t verified by Safe Links in Teams, you need to adjust your Safe Links policies. You can create Safe Links policies that apply to specific users, groups, or domains.
The difference in redirect behavior among users could be due to different Safe Links policies applied to different users, groups, or domains. You should check the specific policies applied to the users who are experiencing the redirects.
For more information you can see these links:
Complete Safe Links overview for Microsoft Defender for Office 365 | Microsoft Learn
Set up Safe Links policies in Microsoft Defender for Office 365 | Microsoft Learn
Please click Mark as Best Response & Like if my post helped you to solve your issue.
This will help others to find the correct solution easily. It also closes the item.
If the post was useful in other ways, please consider giving it Like.
Kindest regards,
Leon Pavesic
(LinkedIn)
Hi
Thanks for the reply
We only have 1 policy and it's applied to all users.
In "Users and domains" -> "included recipient domain" we configured our email domain : ouremaildomain.com
- LeonPavesicDec 15, 2023Silver Contributor
Hi lyncer2013,
thanks for the update.
Microsoft Teams and Office web apps may not fully recognize the "Do not rewrite the following URLs" lists in Safe Links policies.
It means that users included in these policies might still experience Safe Links scanning for URLs in Microsoft Teams and Office web apps.Complete Safe Links overview for Microsoft Defender for Office 365 | Microsoft Learn
Please click Mark as Best Response & Like if my post helped you to solve your issue.
This will help others to find the correct solution easily. It also closes the item.If the post was useful in other ways, please consider giving it Like.
Kindest regards,
Leon Pavesic
(LinkedIn)- lyncer2013Dec 15, 2023Copper ContributorThanks! So this means we can't "whitelist" our internal domain from Safe Links scanning,.
So the only option we have then is to report our internal domain to https://security.microsoft.com/reportsubmission
And then every 30 days ask to add it again?- LeonPavesicDec 15, 2023Silver Contributor
Hi lyncer2013,
yes, regarding the Microsoft documentation, the recognition of internal domains in Safe Links policies for Microsoft Teams and Office web apps may not be as straightforward as whitelisting.
Reporting the issue and requesting to add the internal domain through https://security.microsoft.com/reportsubmission can be a workaround.Please click Mark as Best Response & Like if my post helped you to solve your issue.
This will help others to find the correct solution easily. It also closes the item.If the post was useful in other ways, please consider giving it Like.
Kindest regards,
Leon Pavesic
(LinkedIn)