Forum Discussion
External Sharing Difficulties (SharePoint)
- Nov 13, 2017
Hi Eric Adler,
Do you have the "require recipients to authenticate with the same account that was invited"? If not, then you don't need to create an MSA with the same e-mail address as the account that was invited (gmail). Also, with the new external sharing flow that is rolling out, users who do not have an account will no longer be required to create an account. Instead they can authenticate via a one time code. Hope that helps!
Stephen Rice
OneDrive Program Manager II
So that means someone can authenticate using any Microsoft Account from that link?
Assuming MSA = Microsoft Account?
The key driver in external sharing for me is knowing who the user is that is making edits and accessing content (opposed to sending an anonymous"Edit link)". I am guessing with the way I have it set up I can only know the email address of the person. I guess that is true with any Microsoft Account that is "Personal". There is no verification of ownership with a Microsoft Account with the email that I am aware of.
Eric Adler, that's correct, yes. Without that setting enabled, you know that:
A) The e-mail address that was entered was the only one to receive the invitation link
B) The user who accepted the invitation either is the person who received the invitation link or was forwarded the link from that person.
With the new external sharing flow, we can strengthen that second piece by requiring the owner of the e-mail address to verify all access in a configurable manner (i.e. they must verify every 24 hours, or 1 week, etc.)
Hope that helps!
Stephen Rice
OneDrive Program Manager II