Android KeepMeSignedIn (KMSI) / persistend Login / Data Leakage

%3CLINGO-SUB%20id%3D%22lingo-sub-2258597%22%20slang%3D%22en-US%22%3EAndroid%20KeepMeSignedIn%20(KMSI)%20%2F%20persistend%20Login%20%2F%20Data%20Leakage%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2258597%22%20slang%3D%22en-US%22%3E%3CP%3EHi%20folks%2C%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3Ei'm%20currently%20facing%20the%20following%20problem%3A%3C%2FP%3E%3CP%3EAt%20first%3A%20I've%20disabled%20the%20Keep%20me%20Signed%20In%20Feature%20per%20conditional%20access%20for%20a%20test%20user%20(Session%20control%3A%20never%20persistent%20browser%20session).%3C%2FP%3E%3CP%3EWhen%20a%20user%20navigates%20to%20outlook.office.com%20per%20browser%2C%20he's%20not%20able%20to%20use%20KMSI.%3C%2FP%3E%3CP%3ENow%20it%20comes%20to%20the%20problem%3A%20When%20the%20user%20doesn't%20close%20the%20browser%20app%20(because%20the%20App%20Switcher%20was%20blocked)%20on%20the%20android%20device%2C%20instead%20only%20closes%20the%20outlook.office.com%20Tab%2C%20the%20browser%20session%20keeps%20persistent.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EHow%20can%20i%20deal%20with%20this%2C%20except%20from%3A%3C%2FP%3E%3COL%3E%3CLI%3Eallowing%20the%20app%20switcher%20and%20teach%20the%20user%20to%20fully%20close%20the%20whole%20browser%3C%2FLI%3E%3CLI%3Eteach%20the%20user%20to%20sign%20out%20of%20outlook.office.com%20everytime%3C%2FLI%3E%3C%2FOL%3E%3CP%3EThese%20two%20workarounds%20are%20way%20to%20error-prone%20and%20could%20result%20in%20data%20loss.%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-2258597%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EAndroid%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EBrowser%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EIntune%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EKeep%20me%20signed%20in%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3Ekmsi%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3ELogin%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3ELogoff%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E
Regular Contributor

Hi folks,

 

i'm currently facing the following problem:

At first: I've disabled the Keep me Signed In Feature per conditional access for a test user (Session control: never persistent browser session).

When a user navigates to outlook.office.com per browser, he's not able to use KMSI.

Now it comes to the problem: When the user doesn't close the browser app (because the App Switcher was blocked) on the android device, instead only closes the outlook.office.com Tab, the browser session keeps persistent.

 

How can i deal with this, except from:

  1. allowing the app switcher and teach the user to fully close the whole browser
  2. teach the user to sign out of outlook.office.com everytime

These two workarounds are way to error-prone and could result in data loss.

0 Replies