{"id":3294,"date":"2022-06-17T03:05:08","date_gmt":"2022-06-17T02:05:08","guid":{"rendered":"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/"},"modified":"2022-06-17T03:05:08","modified_gmt":"2022-06-17T02:05:08","slug":"microsoft-and-apple-working-together-to-improve-exchange-online-security","status":"publish","type":"post","link":"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/","title":{"rendered":"Microsoft and Apple Working Together to Improve Exchange Online Security"},"content":{"rendered":"<div>\n<p>We\u2019ve been working for some time with several partners to come up with ways to smoothly transition our many users from Basic authentication to something more secure: OAuth 2.0-based authentication, or \u2018Modern authentication\u2019 as we call it.<\/p>\n<p>Today we\u2019re delighted to take the next step along that journey by sharing the work we\u2019ve been doing with Apple to help users of their Mail app switch from Basic auth to Modern auth. To leverage this work and help users make the switch, the Microsoft 365 tenant admin may need to take action to make this transition, <strong>so please read carefully<\/strong>.<\/p>\n<h1 id=\"toc-hId--2023937643\"><span id=\"some-background\">Some Background<\/span><\/h1>\n<p>Several years ago, before OAuth 2.0, Basic authentication was the most common method to connect, primarily because it\u2019s easy to use and was widely supported. But today it\u2019s one of the most common vectors for credential compromise and misuse.<\/p>\n<p>Apple has supported OAuth in iOS and macOS clients for several years, so anyone setting up a <em>new<\/em> Exchange Online account in the Mail app on these devices should be configured to use Modern auth. The key here is \u201c<em>new.\u201d <\/em>An Exchange Online account uses Modern auth only if it were added to the device after OAuth support was added to the Mail app.<\/p>\n<p>Even when you upgrade to a newer device, you might still be using Basic auth. When you restore a backup from an old device to a new device or use the built-in migration process to move your data and settings to a new device, your Mail settings will still be configured to use Basic auth.<\/p>\n<p>The difficult challenge of changing the configuration of <em>millions<\/em> of users using <em>millions<\/em> of devices requires both the client and the server to work together to provide a smooth transition. So, Apple and Microsoft have worked together to build a solution for our mutual customers.<\/p>\n<h1 id=\"toc-hId-463575190\"><span id=\"the-solution\">The Solution<\/span><\/h1>\n<p>The solution to a smooth transition lies in OAuth support for something called the Resource Owner Password Credential (ROPC) grant. This grant allows an application to sign in the user by directly handling their password. Given the device already has the users credentials we can use this to our advantage in this one scenario.<\/p>\n<p>Apple will be adding support for this grant and the associated workflow in an upcoming iOS update. A few days after a device is updated, the Mail app will use the credentials it already has in a new flow to authenticate to the Identity Provider (in this case, Azure Active Directory), receive OAuth access and refresh tokens in return, <strong>remove the stored<\/strong> <strong>Basic auth credentials from the device, and then reconfigure the settings on the account to use OAuth. <\/strong>From then on, the account uses OAuth to authenticate to Exchange Online, and the user doesn\u2019t even have to know this happened.<\/p>\n<p>This is a great benefit, especially if you have many users with many devices using Apple\u2019s Mail app. There are, however, two challenges to making this flow seamless to the user: possible interruption from existing policies and obtaining consent.<\/p>\n<h2 id=\"toc-hId-1154136664\"><span id=\"policy-interruption\">Policy Interruption<\/span><\/h2>\n<p>The first challenge to make the flow seamless for users is when you have configured controls and policies that affect the ability for the Mail app to connect using OAuth. These might be Conditional Access rules and\/or a requirement for multi-factor authentication. These things should be checked as they will prevent a seamless switchover. If the code detects user interaction is required, it will not be able to automatically and silently migrate to Modern auth. Instead, the user will receive a prompt to re-enter their password and the \u2018normal\u2019 OAuth flow will kick off. The user will be asked to enroll for MFA or use an existing MFA configuration. Assuming they can complete this process, the account will switch to using OAuth.<\/p>\n<p>If you already have Apple Mail clients using OAuth (which you can verify using <a href=\"https:\/\/docs.microsoft.com\/azure\/active-directory\/reports-monitoring\/concept-sign-ins\" target=\"_blank\" rel=\"noopener noreferrer\">Azure AD Sign-In reports<\/a>) then it\u2019s possible your policies will already allow for a smooth transition. However, we encourage you to check them to be sure. You can do this by configuring a new account on an iOS device to see what the first-time setup experience looks like. If there\u2019s more to it than entering a username and password (e.g., if the users need to enroll in MFA or they need to install additional software), that will potentially make this transition require input from your users, and you should communicate that to them now, before the update is applied.<\/p>\n<h2 id=\"toc-hId--653317799\"><span id=\"obtaining-consent\">Obtaining Consent<\/span><\/h2>\n<p>The second challenge is consent. OAuth requires <em>consent<\/em> to grant apps access to resources. There are essentially three ways to do this:<\/p>\n<ol>\n<li>The user can consent (assuming the admin allows users to self-consent to apps)<\/li>\n<li>The admin can consent <em>on the user\u2019s behalf<\/em><\/li>\n<li>The user can request that the admin approve their consent request<\/li>\n<\/ol>\n<p>In order to switch from Basic auth to Modern auth seamlessly, <strong>we\u2019re encouraging all admins with Apple Mail users using Basic auth to grant consent to the Apple Mail app at the tenant level<\/strong> so that users aren\u2019t individually prompted when the switch to Modern auth takes place.<\/p>\n<h3 id=\"toc-hId-37243675\"><span id=\"managed-devices\">Managed Devices<\/span><\/h3>\n<p>If you currently use a Mobile Device Management (MDM) solution, and the Mail app profile was pushed to the device, it will NOT be updated using this new ROPC logic. The decision was taken early on that if you use MDM, you probably don\u2019t want anyone changing the device configuration without your consent. So, just use your MDM to make the change to Modern auth (ask your vendor if you don\u2019t know how). <a href=\"https:\/\/docs.microsoft.com\/mem\/intune\/configuration\/email-settings-ios\" target=\"_blank\" rel=\"noopener noreferrer\">Here<\/a> are the steps for Intune managed iOS devices.<\/p>\n<h3 id=\"toc-hId--1770210788\"><span id=\"admin-actions\">Admin Actions<\/span><\/h3>\n<p>In the next few days, we will be publishing a Message Center post to all tenants that have iOS\/iPadOS Mail users that we know are using Basic auth, and the post will include the current state of admin consent for the Apple Mail client in their tenant. If you need to grant admin consent to enable a smooth transition to Modern auth, then the Message Center post will state that, and contain a link that will lead the admin through the admin consent process, enabling you to add that consent to your tenant. Global Admin, Application Admin, Cloud Application Admin, and Privileged Role Admin can all grant tenant-wide admin consent for delegated permissions.<\/p>\n<p style=\"background: #F0F0F0; padding: .5em; margin: 1em 0 1em 0;\"><strong>There is no status or dialog when you complete the flow using the Message Center link; you\u2019ll simply return to the admin center, but you <em>can<\/em> <em>verify<\/em> that the flow completed successfully.<\/strong><\/p>\n<p>There are two ways to check if anyone has granted consent for the Apple Mail app in your tenant: the Azure Portal and using PowerShell.<\/p>\n<p>Let\u2019s start with the Azure Portal.<\/p>\n<ol>\n<li>In the left-hand pane of the <a href=\"https:\/\/portal.azure.com\/#blade\/Microsoft_AAD_IAM\/ActiveDirectoryMenuBlade\" target=\"_blank\" rel=\"noopener nofollow noreferrer\">Azure Active Directory admin center<\/a>, select <strong>Enterprise applications<\/strong>.<\/li>\n<li>Look for either <strong>Apple Internet Accounts<\/strong> or <strong>iOS Accounts<\/strong> entries in the application list (both names have been used over the life of the app, it\u2019s the same app no matter the name). If it\u2019s not there, no one has ever used the Apple Mail app with OAuth in your tenant. If it is there, click it.<\/li>\n<\/ol>\n<p><span class=\"lia-inline-image-display-wrapper lia-image-align-center\" image-alt=\"AppleOuathConsent01.jpg\" style=\"width: 999px;\"><img decoding=\"async\" src=\"https:\/\/techcommunity.microsoft.com\/t5\/image\/serverpage\/image-id\/380820i626878BFEC669979\/image-size\/large?v=v2&amp;px=999\" role=\"button\" title=\"AppleOuathConsent01.jpg\" alt=\"AppleOuathConsent01.jpg\"><\/span><\/p>\n<p>Once you are looking at the <strong>Overview<\/strong> page of Apple\/iOS entry, in the left hand pane, click <strong>Permissions<\/strong>.<\/p>\n<p>If you have already granted admin consent, you\u2019ll see entries when the <strong>Admin consent<\/strong> view is showing. If you have not granted admin consent yet, this list will be empty.<\/p>\n<p>Now, there are two possible sets of admin consent permissions you might see. You might see \u2018legacy\u2019 Office 365 Exchange Online EWS and EAS permissions, or you might see the \u2018new\u2019 Microsoft Graph EWS and EAS permissions. Or you might see just EAS, or just EWS. Why the differences?<\/p>\n<p><span class=\"lia-inline-image-display-wrapper lia-image-align-center\" image-alt=\"AppleOuathConsent02.jpg\" style=\"width: 999px;\"><img decoding=\"async\" src=\"https:\/\/techcommunity.microsoft.com\/t5\/image\/serverpage\/image-id\/380821iCF4266ED3CEA4AAF\/image-size\/large?v=v2&amp;px=999\" role=\"button\" title=\"AppleOuathConsent02.jpg\" alt=\"AppleOuathConsent02.jpg\"><\/span><\/p>\n<p>\u00a0<\/p>\n<p><span class=\"lia-inline-image-display-wrapper lia-image-align-center\" image-alt=\"AppleOuathConsent03.jpg\" style=\"width: 999px;\"><img decoding=\"async\" src=\"https:\/\/techcommunity.microsoft.com\/t5\/image\/serverpage\/image-id\/380822iBDC2624B1D996650\/image-size\/large?v=v2&amp;px=999\" role=\"button\" title=\"AppleOuathConsent03.jpg\" alt=\"AppleOuathConsent03.jpg\"><\/span><\/p>\n<p>The simple explanation is there is currently a mismatch between the permissions the app asks for dynamically, and those configured in the Apple Mail app registration itself:<\/p>\n<ul>\n<li>If you see EAS Graph permissions and are logged in as an admin when you consented on your iOS device and checked the box for \u2018And consent for my entire organization too\u2019 \u2013 you\u2019ll likely have the EAS Graph admin consent permissions showing.<\/li>\n<li>If you consented using the admin consent flow or used the big blue button in the Azure portal, you\u2019ll see the Exchange Online permissions.<\/li>\n<li>If you did the same on macOS, you\u2019ll see the EWS permissions (iOS uses ActiveSync (EAS), macOS uses Exchange Web Services (EWS) to connect to Exchange).<\/li>\n<\/ul>\n<p>Is this an issue? No, not at all. It\u2019s a result of Apple updating their apps with the new permissions before the app registration itself &#8211; and that at some point the app registration itself will have to be updated to match. It does not cause any issues, both permission sets are interchangeable at this point in time, so it\u2019s something you can ignore.<\/p>\n<p>Now, if you don\u2019t see either, and the Admin consent list is empty, admin consent has <strong>not<\/strong> been granted. You can see if any <em>users<\/em> have granted consent themselves when you select the <strong>User consent<\/strong> view.<\/p>\n<p><span class=\"lia-inline-image-display-wrapper lia-image-align-center\" image-alt=\"AppleOuathConsent04.jpg\" style=\"width: 999px;\"><img decoding=\"async\" src=\"https:\/\/techcommunity.microsoft.com\/t5\/image\/serverpage\/image-id\/380823iBC6AC50F076FFC75\/image-size\/large?v=v2&amp;px=999\" role=\"button\" title=\"AppleOuathConsent04.jpg\" alt=\"AppleOuathConsent04.jpg\"><\/span><\/p>\n<p>The nice thing here is you can grant admin consent yourself to the app, for the whole tenant, using the big blue \u201cGrant admin consent\u2026\u201d button. That will kick off the admin consent flow, which is identical to what the link in the Message Center post will do. There will be only two dialogs (log in and the admin\/organization consent confirmation) and then you\u2019re done. As you should always with any consent dialog, pay close attention to the details and check for the verified publisher badge, and once happy, choose to Accept.<\/p>\n<p><span class=\"lia-inline-image-display-wrapper lia-image-align-center\" image-alt=\"AppleOuathConsent05.jpg\" style=\"width: 400px;\"><img decoding=\"async\" src=\"https:\/\/techcommunity.microsoft.com\/t5\/image\/serverpage\/image-id\/380824i0D2D9A74C6D10A06\/image-size\/medium?v=v2&amp;px=400\" role=\"button\" title=\"AppleOuathConsent05.jpg\" alt=\"AppleOuathConsent05.jpg\"><\/span><\/p>\n<p>If you are super keen to grant consent right away to get it done, and have the right permissions \u2013 <a href=\"https:\/\/aka.ms\/ConsentAppleApp\" target=\"_blank\" rel=\"noopener noreferrer\">this link<\/a> will do the same thing \u2013 the flow will ask you to authenticate, to accept the request, and then it will return you to the Microsoft 365 admin center.<\/p>\n<p>As we showed above, you can use the Azure Portal to confirm consent was granted, but you can also use PowerShell. The AppId used by Apple client is <strong>f8d98a96-0999-43f5-8af3-69971c7bb423<\/strong>.<\/p>\n<p>Using Microsoft Graph PowerShell (it requires the Microsoft.Graph.Applications and Microsoft.Graph.Identity.SignIns modules):<\/p>\n<p class=\"code\">Connect-MgGraph -Scopes &#8220;Application.Read.All, Directory.Read.All&#8221;<br \/>Get-MgServicePrincipal -Filter &#8220;appId eq &#8216;f8d98a96-0999-43f5-8af3-69971c7bb423&#8242;&#8221; | % {Get-MgOAuth2PermissionGrant -Filter &#8220;clientId eq &#8216;$($_.Id)&#8217; and consentType eq &#8216;AllPrincipals'&#8221; }<\/p>\n<p>Or you can do it using Azure AD PowerShell, where it requires just the AzureAD module:<\/p>\n<p class=\"code\">Connect-AzureAD<br \/>Get-AzureADServicePrincipal -Filter &#8220;appId eq &#8216;f8d98a96-0999-43f5-8af3-69971c7bb423&#8242;&#8221; | Get-AzureADServicePrincipalOAuth2PermissionGrant -All $true | ? { $_.ConsentType -eq &#8220;AllPrincipals&#8221; }<\/p>\n<h1 id=\"toc-hId-16237467\"><span id=\"admin-consent-flowchart\">Admin Consent Flowchart<\/span><\/h1>\n<p>If this all seems a bit complicated, think of it like this:<\/p>\n<p><span class=\"lia-inline-image-display-wrapper lia-image-align-center\" image-alt=\"AppleOuathConsent06.jpg\" style=\"width: 999px;\"><img decoding=\"async\" src=\"https:\/\/techcommunity.microsoft.com\/t5\/image\/serverpage\/image-id\/380825i9A055CD5C90B594C\/image-size\/large?v=v2&amp;px=999\" role=\"button\" title=\"AppleOuathConsent06.jpg\" alt=\"AppleOuathConsent06.jpg\"><\/span><\/p>\n<p>To summarize once more, we\u2019re going to send <strong>all admins that have Apple Mail users with Basic auth<\/strong> a Message Center post in the next few days. Admins will get one of two posts:<\/p>\n<ol>\n<li>You need to grant admin consent; here\u2019s a URL to do that easily<\/li>\n<li>You do NOT need to grant admin consent (because it already exists). No actions for the admin.<\/li>\n<\/ol>\n<p>If you don\u2019t get a Message Center post, it\u2019s because we don\u2019t think you have any Apple Mail clients using Basic auth. Which means, there\u2019s nothing for you to do at this time.<\/p>\n<h1 id=\"toc-hId--1791216996\"><span id=\"switchover-timeline\">Switchover Timeline<\/span><\/h1>\n<p>The code to automatically migrate accounts to Modern auth will appear in an upcoming Apple iOS update. So, encourage users to keep their devices up to date (which is always a good idea anyway).<\/p>\n<h1 id=\"toc-hId-696295837\"><span id=\"what-about-macos\">What about macOS?<\/span><\/h1>\n<p>We\u2019ll provide an update in the future about when this feature will be enabled on macOS. And when it is enabled, the same outcome as above will apply \u2013 the app will attempt to migrate the account from Basic to Modern auth with minimal user interaction.<\/p>\n<h1 id=\"toc-hId--1111158626\"><span id=\"certificate-based-authentication\">Certificate-Based Authentication<\/span><\/h1>\n<p>If your devices are using certificate-based authentication, they will be unaffected when Exchange Online turns off Basic auth in Exchange Online later this year. Only devices authenticating directly using Basic auth will be affected.<\/p>\n<h1 id=\"toc-hId-1124089868\"><span id=\"summary\">Summary<\/span><\/h1>\n<p>If you have users using the Apple Mail app and you want them to seamlessly transition to Modern auth, grant admin consent for them. You can switch those users from Basic auth to Modern auth <em>today<\/em> by simply asking users to remove and re-add their account in the Mail app.<\/p>\n<p><span class=\"author\">Exchange Online Team<\/span> &amp; <span class=\"author\">Apple Mail Team<\/span><\/p>\n<\/div>\n<p><a href=\"https:\/\/techcommunity.microsoft.com\/t5\/exchange-team-blog\/microsoft-and-apple-working-together-to-improve-exchange-online\/ba-p\/3513846\">Read full article (Microsoft Exchange Blog)<\/a><\/p>\n<p>All content and images belong to their respected owners, this article is curated for informational purposes only.<\/p>\n","protected":false},"excerpt":{"rendered":"We\u2019ve been working for some time with several partners to come up with ways to smoothly transition our&hellip;\n","protected":false},"author":2,"featured_media":2564,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"csco_singular_sidebar":"","csco_page_header_type":"","csco_appearance_grid":"","csco_page_load_nextpost":"","csco_post_video_location":[],"csco_post_video_location_hash":"","csco_post_video_url":"","csco_post_video_bg_start_time":0,"csco_post_video_bg_end_time":0,"footnotes":""},"categories":[15],"tags":[698,735,510],"coauthors":[48],"class_list":["post-3294","post","type-post","status-publish","format-standard","has-post-thumbnail","category-microsoft-exchange-server","tag-been","tag-weve","tag-working","cs-entry","cs-video-wrap"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Microsoft and Apple Working Together to Improve Exchange Online Security | Sebae Networks<\/title>\n<meta name=\"description\" content=\"View Microsoft and Apple Working Together to Improve Exchange Online Security for free, here at Sebae. Discover more great posts on our website.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/\" \/>\n<meta property=\"og:locale\" content=\"en_GB\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Microsoft and Apple Working Together to Improve Exchange Online Security | Sebae Networks\" \/>\n<meta property=\"og:description\" content=\"View Microsoft and Apple Working Together to Improve Exchange Online Security for free, here at Sebae. Discover more great posts on our website.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/\" \/>\n<meta property=\"og:site_name\" content=\"Sebae Networks\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/sebaenetworks\" \/>\n<meta property=\"article:published_time\" content=\"2022-06-17T02:05:08+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/techcommunity.microsoft.com\/t5\/image\/serverpage\/image-id\/380820i626878BFEC669979\/image-size\/large?v=v2&amp;px=999\" \/>\n<meta name=\"author\" content=\"James Dean\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@sebaenetworks\" \/>\n<meta name=\"twitter:site\" content=\"@sebaenetworks\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"James Dean\" \/>\n\t<meta name=\"twitter:label2\" content=\"Estimated reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"11 minutes\" \/>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Microsoft and Apple Working Together to Improve Exchange Online Security | Sebae Networks","description":"View Microsoft and Apple Working Together to Improve Exchange Online Security for free, here at Sebae. Discover more great posts on our website.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/","og_locale":"en_GB","og_type":"article","og_title":"Microsoft and Apple Working Together to Improve Exchange Online Security | Sebae Networks","og_description":"View Microsoft and Apple Working Together to Improve Exchange Online Security for free, here at Sebae. Discover more great posts on our website.","og_url":"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/","og_site_name":"Sebae Networks","article_publisher":"https:\/\/www.facebook.com\/sebaenetworks","article_published_time":"2022-06-17T02:05:08+00:00","og_image":[{"url":"https:\/\/techcommunity.microsoft.com\/t5\/image\/serverpage\/image-id\/380820i626878BFEC669979\/image-size\/large?v=v2&amp;px=999","type":"","width":"","height":""}],"author":"James Dean","twitter_card":"summary_large_image","twitter_creator":"@sebaenetworks","twitter_site":"@sebaenetworks","twitter_misc":{"Written by":"James Dean","Estimated reading time":"11 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/#article","isPartOf":{"@id":"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/"},"author":{"name":"James Dean","@id":"https:\/\/www.sebae.net\/blog\/#\/schema\/person\/6d07e05e3d3e4483117c4e2c3315a89f"},"headline":"Microsoft and Apple Working Together to Improve Exchange Online Security","datePublished":"2022-06-17T02:05:08+00:00","mainEntityOfPage":{"@id":"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/"},"wordCount":2114,"commentCount":0,"publisher":{"@id":"https:\/\/www.sebae.net\/blog\/#organization"},"image":{"@id":"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/#primaryimage"},"thumbnailUrl":"https:\/\/www.sebae.net\/blog\/wp-content\/uploads\/2021\/11\/exchange-server-header.png","keywords":["been","We\u2019ve","working"],"articleSection":["Microsoft Exchange Server"],"inLanguage":"en-GB","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/","url":"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/","name":"Microsoft and Apple Working Together to Improve Exchange Online Security | Sebae Networks","isPartOf":{"@id":"https:\/\/www.sebae.net\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/#primaryimage"},"image":{"@id":"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/#primaryimage"},"thumbnailUrl":"https:\/\/www.sebae.net\/blog\/wp-content\/uploads\/2021\/11\/exchange-server-header.png","datePublished":"2022-06-17T02:05:08+00:00","description":"View Microsoft and Apple Working Together to Improve Exchange Online Security for free, here at Sebae. Discover more great posts on our website.","breadcrumb":{"@id":"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/#breadcrumb"},"inLanguage":"en-GB","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/"]}]},{"@type":"ImageObject","inLanguage":"en-GB","@id":"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/#primaryimage","url":"https:\/\/www.sebae.net\/blog\/wp-content\/uploads\/2021\/11\/exchange-server-header.png","contentUrl":"https:\/\/www.sebae.net\/blog\/wp-content\/uploads\/2021\/11\/exchange-server-header.png","width":1920,"height":1080,"caption":"exchange server header"},{"@type":"BreadcrumbList","@id":"https:\/\/www.sebae.net\/blog\/microsoft-and-apple-working-together-to-improve-exchange-online-security\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.sebae.net\/blog\/"},{"@type":"ListItem","position":2,"name":"Microsoft and Apple Working Together to Improve Exchange Online Security"}]},{"@type":"WebSite","@id":"https:\/\/www.sebae.net\/blog\/#website","url":"https:\/\/www.sebae.net\/blog\/","name":"Sebae Networks","description":"Tech Tips, News, Tutorials &amp; Advice","publisher":{"@id":"https:\/\/www.sebae.net\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.sebae.net\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-GB"},{"@type":"Organization","@id":"https:\/\/www.sebae.net\/blog\/#organization","name":"Sebae","url":"https:\/\/www.sebae.net\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-GB","@id":"https:\/\/www.sebae.net\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.sebae.net\/blog\/wp-content\/uploads\/2023\/06\/sebae-logo-icon.png","contentUrl":"https:\/\/www.sebae.net\/blog\/wp-content\/uploads\/2023\/06\/sebae-logo-icon.png","width":512,"height":512,"caption":"Sebae"},"image":{"@id":"https:\/\/www.sebae.net\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/sebaenetworks","https:\/\/x.com\/sebaenetworks"]},{"@type":"Person","@id":"https:\/\/www.sebae.net\/blog\/#\/schema\/person\/6d07e05e3d3e4483117c4e2c3315a89f","name":"James Dean","image":{"@type":"ImageObject","inLanguage":"en-GB","@id":"https:\/\/www.sebae.net\/blog\/wp-content\/uploads\/2021\/10\/avatar_user_2_1634496168-96x96.jpg72371c27260698ee55141397050ef40a","url":"https:\/\/www.sebae.net\/blog\/wp-content\/uploads\/2021\/10\/avatar_user_2_1634496168-96x96.jpg","contentUrl":"https:\/\/www.sebae.net\/blog\/wp-content\/uploads\/2021\/10\/avatar_user_2_1634496168-96x96.jpg","caption":"James Dean"},"sameAs":["https:\/\/www.sebae.net"],"url":"https:\/\/www.sebae.net\/blog\/author\/jdean\/"}]}},"amp_enabled":true,"_links":{"self":[{"href":"https:\/\/www.sebae.net\/blog\/wp-json\/wp\/v2\/posts\/3294","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.sebae.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.sebae.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.sebae.net\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.sebae.net\/blog\/wp-json\/wp\/v2\/comments?post=3294"}],"version-history":[{"count":0,"href":"https:\/\/www.sebae.net\/blog\/wp-json\/wp\/v2\/posts\/3294\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.sebae.net\/blog\/wp-json\/wp\/v2\/media\/2564"}],"wp:attachment":[{"href":"https:\/\/www.sebae.net\/blog\/wp-json\/wp\/v2\/media?parent=3294"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.sebae.net\/blog\/wp-json\/wp\/v2\/categories?post=3294"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.sebae.net\/blog\/wp-json\/wp\/v2\/tags?post=3294"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/www.sebae.net\/blog\/wp-json\/wp\/v2\/coauthors?post=3294"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}