Adding the SharePoint Online URL to the trusted site zones in IE

MVP

Hi ,

  I would like to know what's the right approach in adding the SharePoint Online URL to the trusted site zone in Internet Explorer . I'm thinking of adding https://*.sharepoint.com to the trusted site zone in IE  .However ,  we have a different opinion where-in we just want to add https://companyname.sharepoint.com and https://companyname-my.sharepoint.com to the trusted site zone .So which one would be the right approach here and what are the benefits in adding a wild-card URL ?

7 Replies
If they ever decide to let us do custom url's having the wildcard would make it so you don't have to remember to change that down the road. I don't see a negative to doing so either.

Don't add anything, that's the latest guidance we've heard. The service will take care to add the relevant entries (tenant-files and tenant-myfiles.sharepoint.com).

O365 cannot automatically add entries to IE zoning.

Depends on what you understand by O365. Try it on a new machine, with Office configured - you should see those entries added for any "account" you have added in Office. No other entries should be necessary for things to work as expected across the suite. Except perhaps for mapped drives to specific SPO libraries and such.

Hi Vasil,

 So do you mean to say that I don't need to add the URL's to the trusted sites zone unless and until my users are mapping the SPO sites as mapped drives , right ? So how about other Office 365 services , should I add the wildcard URL's for them to the trusted sites zones or that's not required .I'm thinking about the core services such as Exchange Online , Skype for business online and Office Online .

Unless you are trying to solve specific issues, you shouldn't need to add anything. I've been running without adding any sites to the trusted zone for over 2 years now. Of course, your experience will vary, depending on the OS, browser and so on. And remember that some of the authentication scenarios require certain URLs to be in the TS/LI zone, but that's just for those specific URLs.

 

To expand on the bit I mentioned previously - 2 years back we got the App launcher customizations, which broke if you had the sharepoint URLs added to the Trusted zone. So you had to remove any sharepoint sites from TS and only add the -files.sharepoint.com ones instead. Here's the help article that mentions that: https://support.office.com/en-US/client/results?Shownav=true&lcid=1033&ns=O365ENTADMIN&version=15&om...

 

In December 2015 monthly patches for Office (MSI), they released a code update that adds those sites (tenant-files and tenant-myfiles.sharepoint.com entries get added to the Trusted zone in IE):

Updates Office applications to use configure token to add SharePoint trusted URLs to the trusted zone. 

Hi Vasil ,

  Understood .But lot of our end users want to map the SPO sites as network drives and that's why we wanted to add the SPO wildcard URL to the trusted sites zone .I hope this should be fine , right ?