Intune Android Shared device Remove Pin

lalajee 1,811 Reputation points
2023-01-13T22:05:19.6266667+00:00

Hi,

We need to setup some android devices as shared device for front line workers but when I setup the device it works fine but after 20-30 minutes it force me to have an Pin but i'm not sure where this setting is coming from

We have following requirements

  1. Shared Device is available to login by any domain user
  2. Who ever logs onto device must setup an session pin
  3. If device is not in use, device mush wipe any existing session

I have followed these steps

  1. Corporate-owned dedicated devices - create new token "Corporate-owned dedicated device with Azure AD shared mode"
  2. Then create an dynamic group "(device.enrollmentProfileName -eq "Azure AD Shared Device mode")"
  3. Then assign "Microsoft Home page" app to above group
  4. Then Configure new Config Profile and assign to above group User's image
  5. Then create new App Config policy and assign to above group User's image
  6. Then create Compliance policies and assign to above group User's image When I enrol new shared device it enrols it but after 10 minutes its asking for pin setup, I dont want to setup pin for shared device, i like to ask user who will logon to these device to setup an session pin

How can I do this and where is the pin setting coming from

Microsoft Intune Android
Microsoft Intune Android
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Android: An open-source mobile platform based on the Linux kernel, developed by Google, and maintained by the Open Handset Alliance.
242 questions
Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,270 questions
Microsoft Intune Compliance
Microsoft Intune Compliance
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Compliance: Adhering to rules, standards, policies, and laws.
142 questions
0 comments No comments
{count} votes

Accepted answer
  1. Crystal-MSFT 44,411 Reputation points Microsoft Vendor
    2023-01-17T05:06:43.89+00:00

    @lalajee, Thanks for the reply.

    After checking the policy settings applied to shared device, I didn't find one related to the PIn or password set. That's strange. If we unenroll the device, delete the records in both Intune and Azure AD, then enroll again, will we PIN requirement disappear?


2 additional answers

Sort by: Most helpful
  1. Rahul Jindal [MVP] 9,276 Reputation points MVP
    2023-01-13T22:41:45.5666667+00:00

    It is system security policy in your compliance policy that is forcing the 6 digit pin. You will need to look into that.


  2. Rahul Jindal [MVP] 9,276 Reputation points MVP
    2023-01-14T23:03:41.4533333+00:00

    Is the device checking in? The compliance shows multiple sources for policies. Sure the filter is populating the intended devices?