This topic covers the most common questions asked by customers and administrators about the features in Workspace ONE Boxer.

FAQs for Mailbox Delegation

Q: What are the supported Exchange versions?

Exchange Versions 2013, 2016, 2019, and Office 365.

Q: Is there a limit on the number of delegates?

Yes, the delegate can only add 5 delegators.

Q: Which protocol is used for the delegation feature?

Exchange Web Service protocol is used for the delegation feature. You must enable EWS on your Exchange Server.

Q: Does ActiveSync support the Mailbox Delegation?

This feature is not supported on ActiveSync due to the technical limitations of the ActiveSync protocol.

Q: Does this feature support the Secure Email Gateway (SEG)?

Yes, this feature supports Secure Email Gateway (SEG).

FAQs for Multiple Managed Accounts

Q: Is it required to configure and use all managed accounts?

No, you can skip signing into the multiple accounts. If at least one managed account is signed in, you can use Boxer. You can also select to sign out from a particular account.

Q: How can I sign out from a managed account?

To sign out from a managed account, navigate to Boxer settings > Select the Account > Remove Account.

Q: How can I disable notification for a particular email account?

To disable notification, navigate to Boxer settings > Select the Account > Notification settings and deselect the email notifications preference.

Q: What happens if the app passcode and SSO are enabled at the same time?

Boxer uses the SDK for SSO. If SSO and the Boxer Passcode are enabled, then the SSO settings are used.

General FAQs

Q: For a closed or restricted network is it mandatory to have access to https://discovery.awmdm.com endpoint?

Yes it is as per the KB article https://kb.vmware.com/s/article/2960709?lang=en_US.

Q: What are the impacted services, If access is not given to https://discovery.awmdm.com endpoint?

The SSL/TLS network traffic cannot inspect as certificate pinning gets effected.

Q: Is Boxer communication impacted by access to https://discovery.awmdm.com endpoint? In this scenario why only Android 9 and Android 10 devices be impacted?

The SSL/TLS network traffic cannot inspect as certificate pinning is impacted. Android 9 or 10 might have added extra security for SSL/TLS. The code that connects to https://discovery.awmdm.com is part of AW SDK.

FAQs for Azure Information Protection (AIP) Sensitivity Labels

This topic covers the most common questions asked by customers and administrators about the AIP feature in Workspace ONE Boxer.

Q: Where I can create and manage labels?

You can create labels in the following:

  • Azure AIP - Currently, the Microsoft Information Protection (MIP) SDK only supports labels that are configured in Azure. The Azure AIP gets deprecated by April 2021. After depreciation, MIP SDK can start fetching labels from the Office 365 Security and Compliance Center.
  • Office 365 Security and Compliance Center - From April 2021 onwards, Office 365 Security and Compliance Center can only create and manage labels. To avoid issues, customers must move the labels from Azure to Office 365 soon.

Q: What versions of Exchange I can use for the AIP feature?

You can only use Office 365 for the AIP feature.

Q: AIP supports what mode of authentication?

AIP feature only supports Modern authentication.

Q: What mode of encryption is supported in AIP?

AIP only supports encryption with Azure Cloud key. You can provide additional encryption on the server.

Q: What is the minimum supported Boxer version for the AIP feature?

5.19 for iOS and Android Boxer.

Q: What is the minimum supported OS version for AIP?

AIP supports all the versions of iOS and version 7.0 for Android.

Q: Why I cannot see the labels?

The following are some possible reasons for which you cannot view the labels:

  • Labels are not configured in Azure and the list is empty.
  • You have not authenticated in Azure.
  • You did not provide the consent in the Microsoft account to use the AIP Sensitivity labels application from VMware.
  • Your admin has not enabled the key PolicySensitivityLabelsEmailClassification.

Q: Why I cannot access emails?

The following are some possible reasons for which you cannot access the emails:

  • You are not part of the allowed user group or organization in the User Permissions settings of the label.
  • You do not have the permission to view the content.
  • Your access time has expired.

    Note: Content access is managed in File Content Expiration settings of the label. Proper error messages and action items can be displayed in Boxer if they are configured in the settings in Azure.

Q: Why I cannot change a label?

Because you do not have permission to change the label. FAQs for

check-circle-line exclamation-circle-line close-line
Scroll to top icon