I'm wondering if anyone has found a way to allow external access to Microsoft Teams while restricting access to SharePoint files. Given the tight integration between Teams and SharePoint, I'm concerned that conditional access policies may not be effective in separating their controls. Are there any configurations or settings that can help achieve this? I'd love to know what you had to compromise on to make it work. Just to clarify, all our company devices are enrolled in Intune, and I'd like our end users to access Teams on their personal devices without being able to access any files.
1 Answer
It seems a bit counterproductive to use a collaboration tool while you’re trying to limit collaboration! But I get that you’re aiming for data protection as you transition to a Zero Trust model. Just be careful to balance between security and usability for your teams. Have you considered setting up Data Loss Prevention strategies instead? That might help secure your documents without completely stifling collaboration.

Exactly! I'm all for security, but if the collaboration aspect takes a hit, it might defeat the purpose of using Teams.