Microsoft Teams: Control External Access by Domain for Specific Users and Groups

Summary

Gain granular control over external communication. By setting custom External Access policies, you can define domain allow/deny lists and assign them to specific users or groups - capabilities that were previously tenant-wide only ("Teams and Skype for Business users in external organizations"). Use this to pilot with a department, restrict high‑risk roles to approved partners, or open federation broadly where appropriate. Example: Allow Group A to communicate only with a specific domain, while Group B can communicate with all external domains.

Status
Launched
General availability target
Sep 2025
Preview target
Not published
Products
Microsoft Teams
Clouds
Worldwide (Standard Multi-Tenant)
Release phases
General Availability, Targeted Release
Platforms
Android, Desktop, iOS, Mac, Web
Added to the roadmap
26 Aug 2025
Last changed
27 Nov 2025 · 10mo ago
recently changed
ChangeIntel is an independent tool and is not affiliated with or endorsed by Microsoft. Microsoft, Windows, Microsoft 365, Azure, and related names are trademarks of the Microsoft group of companies. Data comes from public sources listed on Sources; every item links to its original page. Dates and statuses can change after they are read. Built by Evotec. This is the public demo. It can also run on your own server, with your Microsoft 365 tenant and device data kept inside your network; Evotec can help you deploy and extend it.