Skip to main content

bqqXEcQugBE7u81xo9gyj7JxX2oXX6ATr98CFmoVY-eThgvhO3oFO7mUs1l4bbKOxxqlDvK8hPP47xrHbCYm6xnCzJkZPrrPewxh1luSBfQYqBw0Zo9c8v2v-oSQGBDtGq2ks2bmQjHdkIRoT5LF8Lc

Netskope Global Technical Success (GTS)

Block Microsoft Apps Access: Personal Account - I

 

Netskope Cloud Version - 119

 

Objective

Microsoft Apps access via personal email ID should be blocked

 

Prerequisite

Netskope CASB Inline license is required

 

Context

The customer's requirement is to block access to all Microsoft apps when a user tries to access them using their personal email ID (for example, *@outlook.com, *@hotmail.com).This document will discuss how to achieve this.

 

Do You Know?

  • The Microsoft suite includes a variety of applications. The domains responsible for user authentication (when an end-user attempts to log in via their personal account, such as *@outlook.com, *@hotmail.com) include account.live.com, login.live.com, profile.live.com, sc.imp.live.com, secure.shared.live.com, skypewebexperience.live.com, and windowslive.tt.omtrdc.net.
  • Netskope recognizes these domains under a predefined cloud app called Microsoft Live Accounts
  • As of March 22, 2024 with Netskope’s Microsoft Live Accounts predefined cloud app connector, customers can exercise control over the following activities:

 

rBDp_gBv5JwWfYfYWettr-bjjKMd7L8CiCvnOBw5yfY8sH10XgrLdkrqkFuF1OxN0UhqYloXz2OUtx8tq9pCEcDR3KZVT0ZI1zx3NbGEc197omZdNG8ouhG1Oo_P0HSveA4v3xcl6OIbWvdD7yRz1h0

 

Configuration

  • Create a Real-time protection policy

Path - Netskope Tenant UI >>> Policies >>> Real-time Protection >>> New Policy

dxRzzrUMaW8loCUQ5a4R9dB3htJZbhyd12Y7jHuziN25qmFisXAhWZlQw4E-k8ktBbupODBNZUVUdlDLVbwd7EfvtntS5djlHK0gI9TNenJpsPNeNmpCD_ksK9XkpYyXUnx9JHswDOYsD4mjtKkhG7I

 

Verification

  • Step 1 - Try to login Microsoft Outlook web version and you will get the below -

kMG4fazmlR3eh22AQEVv72P26r8-berji2L7rLD-MNP7IP_LsqKXQgLogR3KqOCjYM4-hohlpAIuuC6ZS0bT8n85RX_YQAzuC5thgtq_0H288F3AYstgom2lWtEmstkcwsjJvOGtTcOYmroGJ0K77K4

  • Step 2 - Check policy hits

VQAtbgiCBBGtCEgguNF6k_WqTAcOvGc5V6feQ7V5PiLiFBXKEX68zGxhDBnO0RTkdBxSNgl-gbwEG-j7KZPV6VPPHBN_YktunP1NvprydeKdEwBAK_HD1Z4Ay0rrimT9Jo6Ixrs17SNHsVmDrJA0xgE

7xTF24wakooVb_9ojV3qc6WL6zRWimvIP8vIH-7zcCU8f88RhcNJPmhts5ncXPqQxJaidqvxrYLEQo_k8qqCOvP7SkMQHM72AVdaNEYTqsOxN4I5MHBMMj1k6a1sFolpreYAvWv1BagWeikpQxCsOZk

 

Terms and Conditions

  • All documented information undergoes testing and verification to ensure accuracy.
  • In the future, it is possible that the application's functionality may be altered by the vendor. If any such changes are brought to our attention, we will promptly update the documentation to reflect them.

 

Notes

  • This article is authored by Netskope Global Technical Success (GTS).
  • For any further inquiries related to this article, please contact Netskope GTS by submitting a support case with 'Case Type – How To Questions'.

 

Be the first to reply!