
As a side note, if your Office 365 tenant has any “K” (kiosk) licenses then the organization-level EWS controls will not work, and you’ll need to use per-user EWS controls.įirst, let’s take a look at the mobile device association that shows Outlook connecting to the REST API. Since this example scenario is for a user who has had the ActiveSync protocol disabled I will stick to the per-user option.

If you want to block Outlook app usage for the entire organization then you would use an organization-level EWS block list. This is the approach I’ll demonstrate here.Īs I’ve previously written here, EWS policies can be used to block or allow specific applications on a per-user or per-organization basis. Block the Outlook app using an EWS block list.This approach also blocks all REST API access for the targeted users, not just the Outlook app. Client access rules can be targeted at specific users but managing the target list over time could be cumbersome. A client access rule to block REST API access.This is an organization-wide block and requires you to manually approve Outlook app usage on a per-user basis for anyone who still needs to use it, so it may not be a practical approach if you’re just trying to block one user from having any mobile email access. A device access rule to block Outlook for iOS and Android.There are a few approaches that we can use: To block access to the REST API we need to use a different method. Image via TechNetĮven when ActiveSync is disabled the REST API is still accessible by Outlook. ADAL authentication, used by Office apps on both desktop and mobile devices, involves users signing in directly to Azure Active Directory, which is the identity provider for Microsoft 365 and Office 365, instead.
#ANDROID MAIL APP FOR OFFICE 365 ANDROID#
The protocol translator enables communication between Outlook and Exchange Online. ADAL-based authentication is what Outlook for iOS and Android uses to access Exchange Online mailboxes in Microsoft 365 or Office 365. Exchange Online data is accessed via the publicly available REST APIs. The app is coded with the Outlook device API, a proprietary API that syncs commands and data to and from the app. This component routes data and translates commands, but it doesn’t cache user data. Outlook for iOS and Android uses a stateless protocol translator component that is built and run in Azure. The reason for this is the architecture of the Outlook app and the infrastructure it connects to. Where you are asked for a server name, enter . If asked to use SSL security, then do so.PS C : \ > Set - CasMailbox dave. Any field called Domain should generally be left blank. The most important steps are to ensure you enter your email address where your email address is requested and your username in the format where your username is requested. How do I configure other email apps on my Android smart phone or tablet?Įach application will have its own unique way of allowing you to configure it, but they will all request the same key pieces of information listed above.

Enter your email address (not your username) and your McCombs logon password.If you are unsure, then restart your Android smart phone or tablet. Ensure that the Email App is not currently running.
