Restricting O365 Access on Unmanaged Devices and Non-Edge Browsers

Sridhar Thota 0 Reputation points
2025-10-03T06:59:13.9533333+00:00

Hi

To enhance data security and compliance, we aim to restrict access to Microsoft 365 applications from non-Edge browsers and enforce strict controls on unmanaged desktop and laptop devices running Windows or macOS. Specifically, users accessing these apps from unmanaged endpoints should be prevented from performing actions such as cut, copy, paste, and download (these restrictions should not apply to mobile devices, tablets, or iPads as we are already have MAM policy in place). The goal is to ensure that sensitive information remains protected when accessed outside of corporate-managed environments, while maintaining usability on trusted platforms.

Thanks

Microsoft 365 and Office | Microsoft 365 Defender | Other | Other
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. JimmySalian-2011 44,721 Reputation points
    2025-10-03T10:46:44.6933333+00:00

    Hi Sridhar,

    This is a vast topic and I will suggest you to review Microsoft Purview for Data and Security Compliance, https://docs.azure.cn/en-us/purview/purview Good to have MAM policy inplace and I will also suggest you to work around Conditional Access Policies to lock down the other requirements and this should cover all the basis security settings for Windows and MacOS.

    Also this will ensure sensitive data is protected via Purview and alerts are sent out.

    Hope this helps.

    JS

    ==

    Please Accept the answer if the information helped you. This will help us and others in the community as well.

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.