For risk management and confidentiality we are trying to enforce a policy that does not allow access to corporate email accounts on our Exchange 2013 from personal devices or those devices that are not managed by our BES12 server. It seems our users have found the "Cloud Magic" app for iOS and Android devices which allows them to connect to our Exchange server and access their email, calendar and contacts, contrary to our policy. I'm trying to figure out a way to block any device access unless they are attached to our BES server. In Exchange I can only find a way to block types of devices, which won't work for this need. I basically want to allow certain users access (those I know have corporately managed devices) to connect.
I've tried disabling everything on the user's account Exchange Active Sync, OWA for devices, Outlook Web App, IMAP, POP3, MAPI and I can still connect using Cloud Magic.
I do still need them to be able to uses Outlook Web Access from a browser though as well.
Any thoughts are appreciated.