Jump to content

mrmule

Members
  • Posts

    4
  • Joined

  • Last visited

Everything posted by mrmule

  1. Hi all, we have a folder within SharePoint that has inheritance disabled and some unique permissions allowing only two members of staff to view/edit. The folder is not visible to any other member of staff, however if a user shares the folder above, those users with the share link can now access the folder that was shared and our folder with unique permissions below it.I am aware that if the folder is shared using the advanced settings / grant permission, there is an option to "Share everything in this folder, even items with unique permissions." If I untick this option, the sharing link this works as expected and the users cannot see the folder with unique permissions below it.Is there a way of disabling "Share everything in this folder, even items with unique permissions." on a site level within SharePoint admin please? - I cannot see such a setting which seems crazy!Thanks for any guidance or advice, MM
  2. Hi All, I wonder if you can help. We have around 30 SharePoint sites and by default under Policies / Sharing we have this set to "Content can be shared with: Existing Guests". We wish to keep this by default however we now require one single new SharePoint site where we require the sharing policy to be with Anyone. I have created the iste but I am unable to select Share with Anyone in that site settings, it is greyed out. I am aware I can amend the organisational setting to "Anyone", and then go through each of our existing sites and set sharing manually to Existing Guests. This will then allow me to enable anyone sharing against the single nw site. However before I do this, is there any way that I can set this single new site with its sharing anyone permission without amending the organisational setting (this would be prefered as it will be more secure for the existing sites). Any thoughts or guidance very much appreciated. Thanks, MM
  3. Hi All, Firstly, thank you for checking out my query and thank you in advance for any input you may have. I am looking for a little advice if possible regarding Office365 and permitting mobile phones to only be permitted access to Exchange and Teams. We will likely need to at some point enroll them into intune device management at some point, however as they are iOS this will mean factory resetting the devices thus this is not acceptable at present. I would like to allow certain users the ability to add exchange email and teams to their mobile device, blocking access to all other paps, I particularly wish to block access to Sharepoint or onedrive on these mobile devices. I currently have two core conditional access policies which are assigned to all users (with exclusions): 1. Require Compliant Device for ALL Apps. 2. Require MFA for ALL Apps. The mobile users who require email and teams on their mobile device are excluded from the policy (1) requiring compliant device. Is it my understanding that I should now create two new CA policies assigned to the mobile users: 1.CA policy requiring a compliant device for ALL apps with the exception of exchange and teams. This should then block access to anything other than exchange or teams from the mobile devices. 2. CA policy targetting Android & iOS forcing MFA, Approved Apps & App Protection Policy I have an app protection policy for iOS and Android, enfocing a password for apps and blocking copy and paste etc. Does this sound like an acceptable way of securing these mobile devices? Any thoughts greatly appreciated. Thanks MM
  4. Hi All, Firstly thank you for looking at this. We have a 365 tenant with a mailbox that is used for our booking system to send out booking confirmations via SMTP Auth. This has worked fine for over four years however yesterday the mailbox got restricted due to potential SPAM / account compromise. We run a message trace and all the email sent from that mailbox was legitimate mail so we removed the restriction. This re-opened up the mail flow and for an hour or so mail was delivered. After an hour mail started to fail to send. Microsoft say there is nothing they can do and we should not attach our booking system through 365. In an attempt to get around this I created a new mailbox and set the booking system to route through that - this worked fine for a few hours but has now suffered the same fate. We probably send around an email every few minutes from the booking system so not overall high usage - I have asked Microsoft to advise on the detail as to why they are blocking this i.e. is it because of contact or quantity of mail but am yet to hear back. Does anyone have any thoughts on how we can get around this please? - Any assistance appreciated. Many thanks, Mule
×
×
  • Create New...