One of the recent need from the client was as follows :- He has 3 types of Employees working in his organization. 1. Company Employees (on-Payroll) - Company owned device 2. Outsourced Consultants - Accessing org data on Payroll org device (non client owned devices) 3. Guest users Need - Company employees should have full access to org data on Company owned devices, however if they access org data from their personal device it should be View only. Consultant - They can access the Data on the device but cannot save anything on device. Guest - They should have view only access and not able to save anything on device. This above should be applicable to Email, One Drive, SharePoint & Teams Data. Solution - Step 1 - Enable limited Access. Step 2 - Create a conditional access policy for EXO with device and browser based condition to apply app restriction policy. Step 3 - modify the Sharepoint limited access policy and add the ...
Microsoft 365 in an Enterprise Environment: Summary & Simple Implementation Guide