Browse Docs
-
Introduction
-
Deployment
- Deployment via RMM
- Operating System Agent
- Deployment via GPO
- Deployment via Intune
- VDI and Remote Desktop Services (RDS)
- Windows Manual Deployment
- Mac MDM Deployment
- Mac Manual Deployment
- Network Deployment
- Secure Mobile Browser
- Bypass Option
- SaaS Restrictions
- Bookmark Manager
- Remote Uninstall
- Bulk Create Customers
-
Management
-
Integrations
-
Nexi AI
-
Policy Management
-
Secure Access (ZTBA)
-
Auto Pilot
-
Training Videos
-
Questions & Answers
-
MSP Automation
ONLINE DOCUMENTATION
|
||||
SaaS RestrictionsIn this document
You can use SaaS Restrictions with vendors including Google GSuite, Microsoft O365, Claude and ChatGPT Enterprise which provide methods to limit access to their services by Domain, Tenant ID, Organization ID or Workspace ID values. How it works?You can configure Saas Restrictions in the backend, from Settings → SaaS Restrictions menu. When you have enabled a SaaS Restriction, according to the type of the application installed, DefensX extensions append a specific HTTP header to every request sent to the related cloud application. For example, if you enabled GSuite restrictions and only provided to example.com as allowed domains, DefensX extensions append Similarly, Microsoft also has a feature to restrict access by Tenant ID or the domain itself (https://learn.microsoft.com/en-us/azure/active-directory/manage-apps/tenant-restrictions). Claude also has a Tenant Restrictions feature to restrict access by Organization ID values (https://support.claude.com/en/articles/13198485-enforce-network-level-access-control-with-tenant-restrictions). ChatGPT Enterprise also has a Workspace Blocking feature to restrict access by Workspace ID values (https://help.openai.com/en/articles/20001323-corporate-network-controls-in-chatgpt-enterprise).
Enabling Google GSuite Restrictions
In order to enable Google GSuite restrictions, first toggle the checkbox on the right-hand side and enter your allowed domains into the list. You can enter as many domains as you want. Enabling Microsoft O365 Restrictions
In order to enable Microsoft O365 restrictions, first toggle the checkbox on the right-hand side and enter your allowed domains or Azure Tenant ID values into the list. You can enter as many domains/tenant id as you want.
Enabling Claude Restrictions
In order to enable Claude restrictions, first toggle the checkbox on the right-hand side and enter your allowed Organization ID values into the list. You can enter as many organization ids as you want. You can find your Organization ID on Claude’s Settings → Account page. Enabling ChatGPT Enterprise Restrictions
In order to enable ChatGPT Enterprise restrictions, first toggle the checkbox on the right-hand side and enter your allowed Workspace ID values into the list. You can enter as many workspace ids as you want. You can find your Workspace ID on the ChatGPT Enterprise Admin Settings page. |
||||