Other than completely disabling Outlook Anywhere and requiring everyone to either be on the LAN or connected via VPN to access Outlook mail, is there any way to control access in a similar way as Activesync access can be managed with MDM solutions?
We cannot restrict to only domain joined computers because we have a lot of business partners that use Outlook from laptops joined to their companies' domains. That is approved because the business partner laptops have similar security policies to ours. What is prohibited is users installing an Outlook client on their privately owned PC and then using it accesses their MAPI account.
Since their unmanaged PC would not be subject to any group policies by us or their employer, they would then be free to then export their mailbox into a PST and do whatever they want with it or simply get their unencrypted home PC stolen with company email data on it.
What options are available for limiting Exchange 2013 MAPI access to specific devices, but not limiting those devices to only devices joined to our own domain?