New Intune Rollout

iKhanTT 41 Reputation points
2021-07-19T16:37:40.067+00:00

I work in a small corporate biz, that is currently on O365 we are now trying out intune on personal mobile phones.

some persons have company phones and some use personal phones (dual sim) with our company sim.

All of the personal devices are Android phones.

I have successfully tested and deployed to my phone as a test and now I have several questions on how to best deploy Intune.

1) If I deploy Intune and a work profile to a phone how do I block the regular profile from setting up outlook (and teams etc..) ?
do I do an Account wipe from O365 Exchange Admin.

2) On Deploying to iPhone are the apps in the same app draw, is it that the files are labeled so that when wiped only those will be removed?
and again how do I block / remove existing outlook that is already setup on the iPhone?

3) can I push bookmarks in edge?

Microsoft Security | Intune | Other
0 comments No comments
{count} votes

Accepted answer
  1. Jason Sandys 31,406 Reputation points Microsoft Employee Moderator
    2021-07-19T18:04:20.89+00:00

    1) You don't really block a user from configuring a corporate resource in the personal profile, but you block their ability to connect to that resource using Conditional Access. Conditional Access is an AAD feature that blocks access to AAD authenticated resources based on the state and compliance of a device including traits like the profile and application being used. Intune defines extended information that feeds into CA.

    2) Kind of. The actual technical details are app specific and thus it's ultimately up to each app to define this.

    3) Yes, using app config policies, see https://www.inthecloud247.com/manage-edge-mobile-favorites-with-microsoft-intune/. Also see for complete Edge management details https://learn.microsoft.com/en-us/mem/intune/apps/manage-microsoft-edge

    0 comments No comments

3 additional answers

Sort by: Most helpful
  1. Lu Dai-MSFT 28,496 Reputation points
    2021-07-22T06:09:07.303+00:00

    @iKhanTT Haven't heard from you for some time, is Jason's answer helpful to you? If it is helpful, please accept answer. It will make someone who has the similar issue easily find the answer.

    If you have any other issues, please don't hesitate to let us know.

    Thanks and have a nice day.

    0 comments No comments

  2. iKhanTT 41 Reputation points
    2021-07-27T14:59:00.187+00:00

    Thanks Jason-MSFT!

    I will investigate conditional Access, but I was under the impression you need a P1 licence for Azure, but most of our users don't have this as we have majority Business Standard users.

    0 comments No comments

  3. Jason Sandys 31,406 Reputation points Microsoft Employee Moderator
    2021-07-27T15:08:55.587+00:00

    Yes, conditional access requires AAD P1 licensing.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.