Restricting Access to Outlook Anywhere - Corporate Devices Only

Associate
Joined
31 May 2005
Posts
2,125
Location
Alfreton,Derbyshire
What are peoples thoughts on this, a client has asked on the best approach to stop users configuring their own machines with outlook and hence to limit it to just corporate devices. I can see no easy way but have a couple of ideas;

1.) Ensure they connect to the corp ssl vpn (not really OA at that point)
2.) Use an IPSec method between the endpoint and OA
3.) Utilise their Big-IP with some sort of APM access doing a client cert check etc, but I'm not sure if and how it will work with just the outlook client

Has anyone else dealt with a similar request? There is no option to just disable it on the non roaming accounts before it is suggested. This is simply device limitation.

Any thoughts are appreciated
 
Have a look at "gate keeper" or google "exchange 2010 gate keeping", i looked in to it briefly and it allows you to set up a per device activation for active sync.

Basically it blocks active sync completely and only allows devices to use it that have been specifically enabled.
 
Last edited:
Back
Top Bottom