Hi,
I hope anyone can help me out with the following (or maybe point me in the right direction):
GOAL:
We would like to implement secure access to our corporate data (which resides in Office 365 Sharepoint and Onedrive) by only allowing this for Workspace One managed devices. Employee owned devices should not be able to access the Office 365 data without enrolling in WS1 first.
OUR PRESENT INFRASTRUCTURE:
QUESTION:
Am I able to reach the goal without buying extra licenses like AD Premium or Intune? If so, how? If not, what would be the easiest (cheapest) way to achieve the goal? Can I maybe use VIDM in combination with our 3rd party IDP to reach the goal?
I'm not looking for an extensive explanation. A simple nudge in the right direction would already help me.
Thanks
We have this setup since late April of this year. Based on my understanding, this is how we have our setup:
Here's the authentication workflow at a high level:
We also use another 3rd party but decided it's best to leverage VIDM instead. Hope this helps.
Hi Chengtmskcc,
Thanks for the quick response.
Your setup comes pretty close to ours. We don't have a local AD, but seeing your setup that shouldn't make a difference. Do you have Azure AD Premium P1 licenses?
Aico
That I'm not sure as it's managed exclusively by another team.