Info: on-prem: Outlook Mobile, data cached in outlook.com

%3CLINGO-SUB%20id%3D%22lingo-sub-2727930%22%20slang%3D%22en-US%22%3EInfo%3A%20on-prem%3A%20Outlook%20Mobile%2C%20data%20cached%20in%20outlook.com%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2727930%22%20slang%3D%22en-US%22%3E%3CP%3Eyesterday%20we%20discovered%20some%20very%20worrying%20behavior%20which%20we%20would%20like%20to%20share%20and%20hopefully%20we%20are%20not%20correct%20in%20our%20assumptions.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EIf%20you%20are%20running%20Exchange%20on-prem%20and%20have%20users%20with%20outlook%20mobile%20app%20(android%20or%20ios)%20with%20basic%20auth%2C%20then%20data%20is%20cached%20for%204%20weeks%20somewhere%20in%20outlook.com.%20This%20came%20as%20somewhat%20of%20a%20shock%20for%20us%2C%20as%20we%20are%20not%20permitted%20to%20store%20email%20data%20in%20the%20cloud%2C%20however%20the%20outlook%20app%20does%20this%20without%20the%20knowledge%20of%20the%20user.%20The%20data%20which%20is%20stored%20cannot%20be%20viewed%2C%20searched%20or%20located.%20If%20you%20are%20running%20hybrid%20auth%20then%20this%20data%20is%20cached%20in%20your%20o365%20tennant.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3Ethis%20behavior%20may%20be%20known%20to%20all%20of%20you%2C%20however%20it%20may%20be%20useful%20or%20important%20for%20some%20of%20you.%20For%20further%20info%20please%20see%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fexchange%2Fclients%2Foutlook-for-ios-and-android%2Fuse-basic-auth%3Fview%3Dexchserver-2019%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3EUsing%20Basic%20authentication%20with%20Outlook%20for%20iOS%20and%20Android%20%7C%20Microsoft%20Docs%3C%2FA%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-2727930%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EAdmin%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EExchange%20Online%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EExchange%20Server%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EOutlook%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E
Contributor

yesterday we discovered some very worrying behavior which we would like to share and hopefully we are not correct in our assumptions.

 

If you are running Exchange on-prem and have users with outlook mobile app (android or ios) with basic auth, then data is cached for 4 weeks somewhere in outlook.com. This came as somewhat of a shock for us, as we are not permitted to store email data in the cloud, however the outlook app does this without the knowledge of the user. The data which is stored cannot be viewed, searched or located. If you are running hybrid auth then this data is cached in your o365 tennant.

 

this behavior may be known to all of you, however it may be useful or important for some of you. For further info please see Using Basic authentication with Outlook for iOS and Android | Microsoft Docs

0 Replies