Authentication tenant restriction - Permit authentication only in our own tenant and permit access to other tenants only as guests
When we did all the tests to implement the tenant restrictions, we only put our domains in the "Restrict-Access-To-Tenants" proxy header and we were able to access other tenants as guests.
Now, if the destination tenants are not in the list, our users that are guests in another tenant cannot access resources outside. It’s impossible for us to manage one list of all the tenants where our 6000 users could become guests.
We would like to authorize the connection to other tenants as guests if the authentication is done in our tenant.
Mandatory due to our governance