SaaS Application RestrictionsIn this document
You can use SaaS Application Restrictions with vendors including Google GSuite, Microsoft O365 which provide methods to limit access to their services by Domain or Tenant ID values. How it works?You can configure Saas Restrictions in the backend, from Settings → SaaS Restrictions menu. When you have enabled a SaaS Restriction, according to the type of the application installed, DefensX extensions append a specific HTTP header to every request sent to the related cloud application. For example, if you enabled GSuite restrictions and only provided to example.com as allowed domains, DefensX extensions append Similarly, Microsoft also has a feature to restrict access by Tenant ID or the domain itself (https://learn.microsoft.com/en-us/azure/active-directory/manage-apps/tenant-restrictions).
Enabling Google GSuite RestrictionsIn order to enable Google GSuite restrictions, first toggle the checkbox on the right-hand side and enter your allowed domains into the list. You can enter as many domains as you want. Enabling Microsoft O365 RestrictionsIn order to enable Microsoft O365 restrictions, first toggle the checkbox on the right-hand side and enter your allowed domains or Azure Tenant ID values into the list. You can enter as many domains/tenant id as you want. |
||