MDM CONDITIONAL ACCESS FOR SKYPE-FOR-BUSINESS

Secure Skype for Business access by allowing only compliant, managed devices to connect, with real-time MDM validation, automatic session termination, and optional passwordless SSO.

SphereShield MDM Conditional Access
MDM Conditional Access

Control Skype for Business access with MDM-based device compliance

SphereShield offers a Mobile Device Management conditional access solution that verifies only devices compliant with company security policy can access the corporate network through Skype for Business.

During sign-in and throughout the Skype session, SphereShield checks that the device is valid on the MDM server and is not marked out of compliance.

If a device becomes non-compliant, Skype for Business sessions are terminated automatically and access is blocked immediately.

Block access for jailbroken, rooted, unmanaged, or non-compliant devices.

Use the MDM device owner identity as an additional authentication factor.

Support no-password single sign-on by trusting the MDM identity for authentication.

Managed device sign-in

SphereShield verifies device compliance and identity in real time

Skype for Business access
Compliant device on MDM server Allow
Owner identity verified Trust
Out of compliance or unmanaged Block
Supported MDM vendors
MobileIron
MaaS360 by IBM
XenMobile by Citrix
AirWatch by VMware
BlackBerry GOOD
Microsoft Intune
How it works

SphereShield validates that devices comply with the settings defined by the MDM vendor. Access is checked both during sign-in and throughout the active Skype session.

If the device loses compliance, for example because it becomes jailbroken, rooted, or the user removes MDM control, access is terminated immediately.

The solution helps ensure only approved and managed devices can connect to Skype for Business and related services.

Continuous device validation

Checks device validity and compliance during sign-in and throughout the session.

Immediate enforcement

Automatically terminates Skype sessions and blocks access when compliance fails.

Identity as a security factor

Leverages the MDM device owner identity as an additional factor in authentication.

No-password SSO option

Supports passwordless single sign-on by trusting the MDM identity.

Highlights

Stronger access control for mobile and corporate communications

Device access control to Skype for Business and EWS.

Limit access to corporate devices only.

Maintain control over connecting devices.

Limit access to managed devices only.

Central admin approval control.

Self-service device registration website.

Keep mobile access secure while still making it simple for approved users on managed devices to connect.

Secure Your Collaboration Environment

Protect Microsoft 365, Webex, Teams, OneDrive, SharePoint,
and Skype for Business with SphereShield’s policy-driven security, compliance, and governance controls.

Create your account