Unified Quarantine for Manual Mode On boarding with Office 365 Mail

Some organizations prefer Manual mode of onboarding for these reasons:

  • The permissions required by the Avanan Cloud Security Platform - Emails V2 enterprise application for Automatic mode are too high for the organization.

  • The organization prefers that Avanan do not automatically change mail flow rules, connectors, transport rules, and so on in their Microsoft Azure cloud platform.

However, to get visibility on emails quarantined by Microsoft (Unified Quarantine) and act on them, Avanan requires permissions that are requested only by the Avanan Cloud Security Platform - Emails V2 application in the Automatic mode of onboarding.

For customers using Avanan in Manual mode who agree to grant the necessary permissions (see Office 365 Mail - Required Roles and Permissions) to the Avanan Cloud Security Platform - Emails V2 application, but prefer not to have Avanan manage mail flow rules, connectors, transport rules, and other configurations in their Microsoft Azure, can still use Unified Quarantine.

Note:

Emails quarantined by Microsoft due to a blocked sender (blocked by the end user) are not synced with the Check Point Portal.

  1. Contact Avanan Support with the request.
  2. After approval from the support representative, re-authorize the Office 365 Mail application with Microsoft administrator credentials.
    1. Click Security Settings > SaaS Applications.

    2. Click Configure for Office 365 Mail.

    3. Click Re-Authorize Avanan Office 365 Email App.

    4. Follow the onscreen instructions and authorize the Microsoft 365 application.

    You can see that Avanan is using a different application requiring more permissions.

Unified Quarantine is enabled and the application will not make any changes to your Microsoft 365 configuration.