MCAS | Conditional Access App Control | Session Policy - Block Cut/Copy/Paste

Поділитися
Вставка
  • Опубліковано 10 лип 2024
  • #Microsoft #CASB #Microsoft_Cloud_App_Security #ConditionalAccessAppControl
    What is CASB?
    What is Microsoft Cloud app Security?
    Conditional Access App Control
    Session Control Policy - Block Cut/Copy/Paste
    What is Microsoft Cloud app Security? • What is Microsoft Clou...
    Getting Started with Microsoft Cloud App Security? • Getting Started with M...
    Microsoft Cloud app security | Shadow IT Discovery • Microsoft Cloud App Se...
    Microsoft Cloud app Security | All the setting covered in less that 30 minutes • Microsoft Cloud App Se...
    Microsoft Cloud app Security | Conditional Access App Control • Microsoft Cloud App Se...
    MCAS | Conditional Access App Control | Session Policy - Block Cut/Copy/Paste • MCAS | Conditional Acc...
    MCAS | Conditional Access App Control | Block download on Untrusted Devices • MCAS | Conditional Acc...
    MCAS | Block download based on Real Time Content Inspection • MCAS | Block download ...
    Microsoft Article - docs.microsoft.com/en-us/clou...
    docs.microsoft.com/en-us/clou...
    Regards,
    ConceptsWork
  • Наука та технологія

КОМЕНТАРІ • 32

  • @tijubrain1
    @tijubrain1 2 роки тому

    Great content and excellent presentation. Thank you and keep at it.

  • @nadeerbabu872
    @nadeerbabu872 3 роки тому +1

    Great content 👍Thanks

  • @soydlm8658
    @soydlm8658 3 роки тому +1

    Excelente videos, Thanks.

  • @vinodsurvase2866
    @vinodsurvase2866 3 роки тому +1

    Liked it 👍

  • @shabeelaboobacker352
    @shabeelaboobacker352 2 роки тому

    Great video and simply covered critical areas.
    One question:- How assigning/linking a DLP session policy to a Conditional access policy? We can create many custom DLP policies, in that case how a CA policy identifying which DLP policy is belongs to respective CA policy?
    Thanks.

  • @MSCloudZeroTrustTV
    @MSCloudZeroTrustTV 3 роки тому +1

    Very good ! Thank you

  • @imranawan7908
    @imranawan7908 3 роки тому +2

    Great video. Can you do the same with Microsoft Outlook, Word and Excel. The exe version on the desktop or a laptop

  • @yourtime2602
    @yourtime2602 2 роки тому

    This is a great video to start with. Thank you! I have a query. is this used to control only business apps? like in this case there are users who access onedrive personal account on managed devices. Can we control file upload on personal onedrive from managed devices using the browser?

  • @074_soujanyasengupta4
    @074_soujanyasengupta4 Рік тому

    Great video. thanks. Does session monitoring also detect / block screen sharing?

  • @rajbharath1871
    @rajbharath1871 2 роки тому

    Great video. I would liek to know how can we apply this policy for Domain joined machines instead Intune and AAD Hybrid joined devices. Aso I am not getting Domain joined machine option in Device filter .

  • @priyankareddy3587
    @priyankareddy3587 3 роки тому

    Also, the 2 examples shown in the video are w.r.t browser...can we apply block download or copy paste same policy to desktop apps and mobile apps??

    • @ConceptsWork
      @ConceptsWork  3 роки тому

      No, currently session control policies are only applicable to browser, for rich client applications access policy is created, but that will just block/allow access based on a specific device like corporate owned or not.
      Session control for rich client may be announced in future.

    • @priyankareddy3587
      @priyankareddy3587 3 роки тому

      @@ConceptsWork I have a doubt here..we r creating CA policy in Azure Ad portal .Also we r creating the activity type in session policy where we have option to select apps, conditions etc...
      My query is if we select ALL CLOUD APPS in Azure Ca policy, but in session policy we give only teams so which policy will override?? Also in session policy we have options to provide conditions..

  • @amanjha2289
    @amanjha2289 3 роки тому +2

    bro please make video on azure atp pleeese

  • @priyankareddy3587
    @priyankareddy3587 3 роки тому +1

    Great Video..I have few queries....in Conditional Access to configure the app control as Monitor instead of custom policy we need MCAS to be enabled on our tenant?? Is it just to use Custom policy we need MCAS?? To use Conditional Access app control feature itself we need MCAS to be enabled ??

    • @ConceptsWork
      @ConceptsWork  3 роки тому

      When you select app enforced policy then it is not required, but for custom policy and monitor, MCAS license is required.

    • @priyankareddy3587
      @priyankareddy3587 3 роки тому

      @@ConceptsWork to use Conditional Access app control (Monitor,Block,custom policy all options available in drop-down) we need MCAS licence.

    • @ConceptsWork
      @ConceptsWork  3 роки тому +1

      I completely agree, Conditional Access app control require licenses, I was referring to app enforced policy option.
      But anyways thank you so much, for bringing these details, this means alot and it helps other viewers as well.
      Thanks Priyanka.

  • @yashwantsinghnegi8290
    @yashwantsinghnegi8290 3 роки тому

    Any video on Azure Sentinel? Like your are sharing on MCAS

    • @ConceptsWork
      @ConceptsWork  3 роки тому

      Not yet, but there will by first week of august.

  • @albertnadar123
    @albertnadar123 3 роки тому

    Where& how the endpoints will b white listed ? Any specific port will b assigned or will b command fed into firewall/router ?

    • @ConceptsWork
      @ConceptsWork  3 роки тому +1

      The clients must be able to communicate with all the endpoints listed here - docs.microsoft.com/en-us/cloud-app-security/network-requirements
      Yes, you can define outbound rules on the firewall.

    • @albertnadar123
      @albertnadar123 3 роки тому

      @@ConceptsWork as per the, article port 443 for Ip add n and dns names fed to firewall ... hope I understood that right.. Thanks

  • @soydlm8658
    @soydlm8658 3 роки тому

    This rules also is valid if user use client outlook?

    • @ConceptsWork
      @ConceptsWork  3 роки тому +1

      No, the session polices will work for browser based sessions only.

  • @rahmuhammad8355
    @rahmuhammad8355 3 роки тому

    Please do MDfE

  • @prathameshforu
    @prathameshforu 3 роки тому

    Any video to block file upload on yahoo or gmail?

    • @ConceptsWork
      @ConceptsWork  3 роки тому

      This is an endpoint DLP capability, as of now there is no video, but that's next in pipeline.

  • @ramfisdubero6865
    @ramfisdubero6865 3 роки тому +1

    But you can still do screenshot?