Restrict access to the Outlook Web Access mapping

To secure the back-end server, the Outlook Web Access mapping has to be restricted to authenticated users only.

Procedure-related prerequisites

  • Configuration takes place in Airlock Gateway.
  • You must be logged in as an admin in the Airlock Gateway Configuration Center.


  1. Go to: Application Firewall >> Reverse Proxy.
  2. Edit the Outlook Web Access mapping.
  3. Change to the Access tab.
  4. Enter the role under Access restrictions >> Restricted to Roles.
    • -Restricted to Roles: exchange

    This role is set by Airlock IAM after successful authentication.

  5. Select Authentication flow Redirect.
  6. Configure Denied access URL to /auth/check-login
  7. Under Credential Propagation >> SSO credential propagation, select Basic-Auth.
  8. Enable the checkbox Credential mandatory.