intune liense requirement / MS365

Michael Novak 81 Reputation points
2021-03-25T10:09:30.68+00:00

Hello everyone,
I have a slight problem understanding whether I need a separate Intune license or not for my scenario:

  • Company of 10 users-
  • Licenses: Microsoft 365 Standard for most users, E3 for one user
  • I am the only Global Admin
  • I am the only person managing / installing / maintaining user computers, users are standard non-admin users
  • Devices (Windows 10 laptops) are enrolled as Azure AD joined machines
  • I do not need standard users to enroll their devices on their own as I do it for them
  • I am not using Autopilot, or Conditional Access policies, the only policies I need to use are Configuration policies (i.e. to configure some Windows "GPO" settings, Onedrive, etc.)
  • I am able to use Endpoint Manager, set policies, and propagate them, etc.

My question:
Do I still need to buy a separate Intune license for this scenario and assign it to the user?

Thanks
Michael

Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,241 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,305 questions
0 comments No comments
{count} votes

Accepted answer
  1. Lu Dai-MSFT 28,341 Reputation points
    2021-03-29T08:27:31.79+00:00

    @Michael Novak Thanks for your update.

    For MDM is "Office 365 Mobile", it means the device is managed by office 365. It is needed to switch to intune. We can refer to the following article to switch. On the next MDM check-in, MDM will switch to intune.
    https://learn.microsoft.com/en-us/mem/intune/fundamentals/mdm-authority-set#set-mdm-authority-to-intune

    For MDM is "None", it means the devices just join in Azure AD. It is needed to get intune license and delete the device in Azure AD poral. Then re-enroll the device.


    If the response is helpful, please click "Accept Answer" and upvote it.

    0 comments No comments

10 additional answers

Sort by: Most helpful
  1. Michael Novak 81 Reputation points
    2021-03-26T10:26:28.797+00:00

    Hello,
    Thanks for getting back to me.
    This was a new device with Windows 10 preinstalled. Standard user's account was used during initial setup to join the machine to Azure AD.

    81846-screen-shot-2021-03-26-at-111958-am.png81894-screen-shot-2021-03-26-at-111728-am.png


  2. Michael Novak 81 Reputation points
    2021-03-29T07:41:57.96+00:00

    Requested screenshots attached.

    0 comments No comments

  3. Lu Dai-MSFT 28,341 Reputation points
    2021-03-29T07:59:03.227+00:00

    @Michael Novak Could you please check if the device's MDM shows "intune" in Azure AD portal? If MDM is not intune, it means the device is not managed by intune.
    82275-image.png

    0 comments No comments

  4. Michael Novak 81 Reputation points
    2021-03-29T08:06:47.533+00:00

    MDM value on devices with users having Business Standard license says "None", interestingly enough, MDM value on device of the user with Intune license (other user) has value of "Office 365 Mobile". Is this Basic Mobility and Security?

    There is an option to switch to Intune, but I would like to keep testing this on one device only for now, and keep using Basic MDM for other users.

    Is it OK to switch this?

    Thanks

    82318-screen-shot-2021-03-29-at-100908-am.png

    0 comments No comments