Restricting personal email logins on browsersSolved

Participant
Discussion
6 days ago Jan 17, 2026

Hi, I manage a mix of Windows and macOS devices in our organization and I’m hoping to get some advice from here.

Right now, on macOS, we are using an XML app configuration to block personal email sign-ins in Google Chrome. It mostly works, but users still get a warning and can bypass it, which isn’t ideal.

We’d really like to implement a single policy that works across both Mac and Windows laptops, where only our approved work email domains are allowed, and personal email accounts are restricted on browsers.

If anyone has tips on the best way to approach this, I’d love to hear your thoughts. Thanks so much in advance!

Replies (3)

Marked SolutionPending Review
Hexnode Expert
6 days ago Jan 17, 2026
Marked SolutionPending Review

Hi @abel-j, thank you for reaching out!

To ensure unauthorized access is properly blocked on web browsers, the XML configuration needs to be carefully designed and can be deployed through Hexnode.

A quick heads-up: this restriction needs to be configured individually for each browser.

  • On Windows devices: You can enforce this by running a script that modifies the required registry keys.
  • On macOS devices: The same restriction can be applied using App Configuration.

Feel free to reach out if you need any further assistance.

Regards,
Sienna Carter
Hexnode UEM

Marked SolutionPending Review
Participant
5 days ago Jan 17, 2026
Marked SolutionPending Review

Since you mentioned Chrome, check this out: https://chromeenterprise.google/policies/#AllowedDomainsForApps

Chrome lets you restrict which domains can be used to sign in to Google services, which could help enforce your email sign-in rules.

Marked SolutionPending Review
Participant
5 days ago Jan 18, 2026
Marked SolutionPending Review

Thanks guys, will check it out.

Save