Suppress "Allow my organization to manage my device" for personal devices

AsAdmin 396 Reputation points
2021-12-02T07:07:51.533+00:00

Hi Team,
We want to suppress office app notification "Allow my organization to manage my device" on user personal devices.
Anything can be done via o365 admin portal?
This is to avoid user accidentally enroll device to Intune.

As of now BYOD devices are allowed to enroll in Intune enrollment restriction. We don't want to disable BYOD enrollment, any other option?

Windows for business | Windows 365 Enterprise
Microsoft Security | Intune | Enrollment
0 comments No comments
{count} vote

2 answers

Sort by: Most helpful
  1. Simon Ren-MSFT 40,346 Reputation points Microsoft External Staff
    2021-12-03T08:55:03.897+00:00

    Hi,

    Thanks for posting in Microsoft Q&A forum.

    1,Here is a workaround for your reference. Add below registry key on one device to have a try:

    HKLM\SOFTWARE\Policies\Microsoft\Windows\WorkplaceJoin, “BlockAADWorkplaceJoin”=dword:00000001
    When using this registry, your users will no longer see this notification when they login to ex. Microsoft 365 apps or Microsoft Edge with another work or school account.

    Similar threads for your reference:
    Are you tired of “Allow my organization to manage my device”?
    How to Prevent Allow My Organization to Manage My Device
    Please note: The links are not from Microsoft, just for your reference.

    2,You could also submit an uservoice for Microsoft Teams to stop this behavior :
    Microsoft Teams feedback

    Thanks for your time.

    Best regards,
    Simon


    If the response is helpful, please click "Accept Answer" and upvote it. If you have extra questions about this answer, please click "Comment".
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    5 people found this answer helpful.

  2. Mr Sb 371 Reputation points
    2021-12-06T23:47:24.587+00:00

    There is no way to disable or hide this option on unmanaged devices when using the Intune service within your tenant. This is a feature which is related to the Azure AD registration service which gives the user the ability to register their (personal) device in the Azure AD tenant. When the device gets lost or stolen, your organization will then have the ability to remove access to the corporate data on that personal device.

    155407-azure-ad-registration.png

    2 people found this answer helpful.
    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.