Is it possible to limit a user only can log in to a specific Mobile device on (BYOD mode)?

James Chan_110 425 Reputation points
2024-08-02T03:24:39.79+00:00

Hi All,

  1. Is it possible to limit a user only can log in to a specific Mobile device on (BYOD mode)?
  2. Is it possible to limt a user ony can log in to 2 Mobile devices?

Thanks.

Microsoft Intune Configuration
Microsoft Intune Configuration
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Configuration: The process of arranging or setting up computer systems, hardware, or software.
1,904 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
5,108 questions
{count} vote

3 answers

Sort by: Most helpful
  1. Adharsh Santhanam 4,135 Reputation points
    2024-08-02T04:08:10.1366667+00:00

    Hello James Chan_110, both of these are possible. At a high level, the workflow would be something like this.

    1. Enroll devices in Intune
    2. Create device compliance policies
    3. Configure conditional access policies
    4. Define device limit restrictions
    5. Test and deploy

    You may want to see the following useful references in this regard -- https://learn.microsoft.com/en-us/mem/intune/protect/create-conditional-access-intune and https://learn.microsoft.com/en-us/mem/intune/enrollment/create-device-limit-restrictions

    Please do not forget to "Accept the answer” and “up-vote” wherever the information provided helps you, this can be beneficial to other community members.

    0 comments No comments

  2. Rahul Jindal [MVP] 10,196 Reputation points MVP
    2024-08-02T07:22:18.71+00:00
    0 comments No comments

  3. Crystal-MSFT 48,851 Reputation points Microsoft Vendor
    2024-08-02T07:44:35.4166667+00:00

    @James Chan_110, Thanks for posting in Q&A. For the mobile device login, did you mean the sign in with some app like outlook etc. If yes, here is my thought maybe you can try,

    1. You can configure device limit restriction to set device limit as 2 and assign it to the user group you want. https://learn.microsoft.com/en-us/mem/intune/enrollment/create-device-limit-restrictions
    2. Enroll the two mobile devices you want for the user.
    3. Configure device compliance policy to ensure the enrolled device to be compliant.
    4. Configure the conditional access policy for the user with the cloud resource you want and require the device to be compliant. https://learn.microsoft.com/en-us/entra/identity/conditional-access/concept-conditional-access-grant

    Hope the above information can help.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.