Skip to main content
Question

Prevent browser access to individual accounts via header injection

  • May 27, 2025
  • 1 reply
  • 9 views

Forum|alt.badge.img

Is it possible to prevent an enterprise user from accessing their individual box account via browser using header injection similar to other cloud based storage solutions.

example: X-Dxxxbox-Teamid

 

The goal would be to not allow them to access their individual account while on corp VPN or network but still allow access to their enterprise box account(s).

 

1 reply

Forum|alt.badge.img
  • Author
  • Box Employee
  • 34738 replies
  • May 27, 2025

Hi there, 

Welcome to Box community!

You can achieve this through the combination of Box Verified Enterprise and setting up rules for your firewall. 

Here are the articles for more information:

I hope this answers your question. Thank you for posting!