User Profile
Yoann_David_Mallet
Joined 9 years ago
User Widgets
Recent Discussions
Re: Teams cloud app policy template not showing
Hi! Your licensing level should be fine, but I am curious on the policies you are using. Are you saying they never triggered? If you can anonymize private data and share the config in capture, it would help review (or you can also open a support case).94Views0likes2CommentsRe: Cloud Discovery - Insights to CDNs
Due to the nature of CDNs, it is difficult to identify what is behind their traffic, but we have enabled features that allow a large share of the content behind CDNs to be discovered like any other traffic. You would therefore see it as any other app that is part of the catalog. Now for the leftover traffic, the larger part of it are applications that are not (yet) part of our catalog.447Views0likes0CommentsRe: Session controlled Microsoft apps very slow response
Hi Kevin, Indeed, we are aware that some latency is inevitable for customers using a service that proxies traffic. While we have a number of ways to optimize traffic and speed, there are cases where the latency is hard to accept for end users. This is why we have invested in a new approach to real time control, setting up controls at the browser (Edge) level. This will provide you similar end results, with almost no latency. More info here: https://learn.microsoft.com/en-us/defender-cloud-apps/in-browser-protection312Views1like0CommentsRe: Connection error in App Connectors
Hi! It appears you haven't yet configured a conditional access policy in Entra ID, to redirect the proper apps you're trying to use through Conditional Access App Control to Defender for Cloud Apps. Detailed steps on how to do that are available in our doc: https://learn.microsoft.com/en-us/defender-cloud-apps/proxy-intro-aad882Views0likes2CommentsRe: Teams Client and Defender for Cloud Apps
Hi! indeed, this is the way the product is designed: it can protect you for web based interfaces. For non-web clients, you have a choice between allowing them, as it is now, or blocking them completely through an Access Policy, that will block clients that are not browser based.848Views0likes2CommentsRe: Unable to ingest SIME Integration logs for Cloud Apps
Tanmoy Hi, In general, we would recommend looking into other options to get data to your SIEM. The graph API is usually your best bet. If your SIEM is splunk, then we recommend to leverage the plug-in using Graph to get the data directly to your SIEM: Splunk Add-on for Microsoft Security | Splunkbase Now if it is not an option, can you please share more details about your issue? All i see here is a time out.578Views0likes1CommentRe: Enforcing Google Workspace Password Resets via MDCA Configuration
Paullee800 Hi! this option is available in the Governance Actions section of Activity Policies, as per the capture below. The usual scenario is that you would trigger this action on a specific user behavior that you deem suspicious or risky.338Views0likes1CommentRe: Microsoft Defender for Cloud Apps session policy does not work for Sesitivity Label file
JZXD2014 The session policy seems to be configured to do what you are describing, but it is difficult to assess what's blocking without know more about your Conditional Access policy, directing the session to Defender for Cloud Apps. In case of doubt, please review this documentation: Conditional access app control - Microsoft Defender for Cloud Apps | Microsoft Learn Feel free to reply to this post and tag me if you have more questions.370Views0likes0Comments