SOLVED

MAM Conditional Access blocking users to sync Outlook Calendar into the native Calendar app.

Copper Contributor

Hi there,

 

All of ours mobiles are unmanaged(not enrolled on Intune/MDE) and we are using MAM to protect the data.

 

MAM is working well for us, but I have a request where users need to sync the Outlook contacts(only) to the iOS native Contacts app, I tried some settings but it did not work and the Conditional access is blocking.

 

I have set the App Protection Policy for iOS as below

tcz87_0-1725988272960.png

 

 

And when the user go Settings > Contacts > Accounts > Add Account > Microsoft Exchange > Add the account, it fails because the MAM's CA blocked

 

Checking the EntraID logs I was able to confirm it

tcz87_1-1725988309574.pngtcz87_2-1725988337525.pngtcz87_3-1725988353600.pngtcz87_4-1725988378445.png


The CA applies to All Cloud Apps and I excluded the application "Apple Internet Accounts" from the CA.

 

Does anyone have any idea how to fix it?

 

Thanks in advance

T

 

5 Replies
best response confirmed by tcz87 (Copper Contributor)
Solution

@tcz87 

 

Did you configure the App Configuration Policy for Outlook:

 

SebastiaanSmits_0-1726047933681.png

 

You can see more information here about App Configuration Policies: https://learn.microsoft.com/en-us/exchange/clients-and-mobile-in-exchange-online/outlook-for-ios-and...

 

The users also have configuration options in the Outlook Settings, that's what the 'allow user to change setting option' is for. 

 

------

Please click Mark as Best Response & Like if my post helped you to solve your issue.

This will help others to find the correct solution easily. It also closes the item.

If the post was useful in other ways, please consider giving it Like.

 

@SebastiaanSmits 

 

Yes, I did configure the App Config Policy for Outlook but the CA is still blocking it.


tcz87_0-1726068344258.png

 

There is no need to login to the Native mail client - when you configured the settings correctly in you App Configuration Policy and App Protection Policy you only need to sync Contacts and they will appear in the Native Contact client..

@SebastiaanSmits

 

You are right! I was doing something that I didn't need! 

 

Thanks for replying.

 

T

1 best response

Accepted Solutions
best response confirmed by tcz87 (Copper Contributor)
Solution

@tcz87 

 

Did you configure the App Configuration Policy for Outlook:

 

SebastiaanSmits_0-1726047933681.png

 

You can see more information here about App Configuration Policies: https://learn.microsoft.com/en-us/exchange/clients-and-mobile-in-exchange-online/outlook-for-ios-and...

 

The users also have configuration options in the Outlook Settings, that's what the 'allow user to change setting option' is for. 

 

------

Please click Mark as Best Response & Like if my post helped you to solve your issue.

This will help others to find the correct solution easily. It also closes the item.

If the post was useful in other ways, please consider giving it Like.

 

View solution in original post