Solved

Netskope SWG and Onenote

  • 3 January 2024
  • 5 replies
  • 127 views

Badge +1

While we have the normal exceptions in place for MS 365 and the likes, we seem to have users including myself that can't get Microsoft Onenote to sync unless we disable the endpoint client.

 

Has anyone seen this or have an idea on how to solve?

 

Thanks!

 

icon

Best answer by hoby 4 January 2024, 15:43

View original

5 replies

Userlevel 3
Badge +1

Onenote sync is detected as O365 OneDrive in Skope IT. You need to add this in Steering Exception if it is not in there.

Badge +1

Thanks for the info, I had assumed the 365 suite was already part of the exceptions, but it appears Onedrive is not.  I don't see that as a Cert Pinned App, nor do I have the ability to make Application exceptions in our tenant for some reason like they talk about on the site.

I will reach out to support I guess.

Thanks for the info!

Userlevel 2
Badge +9

@hoby this is an easy fix, please add this URL only to an SSL Bypass this should fix your issue. That was bad advice to add that as a steering exception/bypass.

 

url: *.contentsync.onenote.com

 

Badge +1

Oh this is much easier!  Support gave me some info on creating Cert Pinned App for Onenote app on Mac and Windows, but I would prefer this as it works across the board.  Thanks!

Userlevel 5
Badge +16

I'm still hoping that Netskope will implement a method by which traffic can be sent to Netskope by the client, but be identified as certificate-pinned and bypassed from processing in the cloud.   That way all traffic is still sent through Netskope rather than needing a direct-egress path.

Reply