Enfore Basic or NTLM authentication

yasser Mohamed AbdelMoneim 291 Reputation points
2021-01-15T16:18:31.467+00:00

Hi

We have Exchange 2016 and ADFS and the clients is outlook 2016

We enabled hybrid moderen authentication and it is enabled for all users now.

I need to enforce all internal users to use basic or Ntlm authentication when the connected to exchange 2016 and the modern authentication will be applied on External user.

Please send me your suggestions

Microsoft Identity Manager
Microsoft Identity Manager
A family of Microsoft products that manage a user's digital identity using identity synchronization, certificate management, and user provisioning.
624 questions
Exchange Server Management
Exchange Server Management
Exchange Server: A family of Microsoft client/server messaging and collaboration software.Management: The act or process of organizing, handling, directing or controlling something.
7,380 questions
Microsoft Exchange Hybrid Management
Microsoft Exchange Hybrid Management
Microsoft Exchange: Microsoft messaging and collaboration software.Hybrid Management: Organizing, handling, directing or controlling hybrid deployments.
1,906 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Lucas Liu-MSFT 6,161 Reputation points
    2021-01-18T06:13:34.683+00:00

    Hi @yasser Mohamed AbdelMoneim ,
    Based on my knowledge, in Exchange 2016 or later, MAPI over HTTP is enabled by default at the organization level, and we cannot configure separately internal and external authentication for MAPI virtual directory. We only could enable Basic or other authentication by Set-MAPIVirtualDirectory with IISAuthenticationMethods parameter. But this will change both internal and external authentication methods.
    In addition, according to the Microsoft official article, Microsoft recommend that you always have the virtual directory configured for OAuth.
    There is a similar cased you could refer to: How to set MAPI/HTTP internal and external authentication differently

    ----------

    If the response is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.