How to prevent users to use work or school productivity apps on their personal devices like Android, iOS, macOS/iPadOS and Windows for that matter?

Vinod Survase 4,716 Reputation points
2023-04-12T10:08:45.68+00:00

How to prevent users to use work or school productivity apps on their personal devices like Android, iOS, macOS/iPadOS and Windows for that matter? Is there a way to do this or how we can prevent it?

Microsoft 365
Microsoft 365
Formerly Office 365, is a line of subscription services offered by Microsoft which adds to and includes the Microsoft Office product line.
4,088 questions
Microsoft Intune iOS
Microsoft Intune iOS
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.iOS: An Apple mobile operating system.
195 questions
Microsoft Intune Android
Microsoft Intune Android
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Android: An open-source mobile platform based on the Linux kernel, developed by Google, and maintained by the Open Handset Alliance.
253 questions
Microsoft Intune Configuration
Microsoft Intune Configuration
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Configuration: The process of arranging or setting up computer systems, hardware, or software.
1,771 questions
Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,283 questions
{count} votes

Accepted answer
  1. Rafael da Rocha 5,091 Reputation points
    2023-04-12T10:22:27.2733333+00:00

    Hello, You could set a conditional access policy that requires devices to be enrolled in intune and be corporate owned. Any device that isn't compliant with this requirements would be denied access to resources in your tenant Here's an article with some information about device based conditional access: https://learn.microsoft.com/en-us/mem/intune/protect/create-conditional-access-intune

    2 people found this answer helpful.

3 additional answers

Sort by: Most helpful
  1. Findme1 0 Reputation points
    2023-04-12T11:08:40.25+00:00

    nullnullnullnullnullnullnull

    Once you have created a conditional access policy, it will be enforced whenever users attempt to access the specified resources. Users who do not meet the policy requirements will be blocked from accessing the resources or prompted to take additional authentication steps to gain access. Note that enabling conditional access policies in Azure Active Directory may require additional configuration and integration with other security tools and services. It's important to thoroughly test and monitor your policies to ensure they are working as intended and not causing unintended disruptions to user access or productivity. hope this will help, GOOD LUCK!


  2. Simon Ren-MSFT 31,446 Reputation points Microsoft Vendor
    2023-04-13T07:14:17.7333333+00:00

    Hi,

    Thank you for posting in Microsoft Q&A forum.

    Per my experience, device based conditional access policy is suitable for your scenario. Similar thread for your reference:

    Block Access for all non-Intune MDM enrolled mobile devices in Conditional Access

    Note: This is non-Microsoft link, just for your reference. Thanks for your time. Have a nice day!

    Best regards,
    Simon


    If the response is helpful, please click "Accept Answer" and upvote it. Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


  3. Findme1 0 Reputation points
    2023-04-26T16:23:43.0966667+00:00
    0 comments No comments