Forum Discussion
Preventing a data spill from a company M365 profile to a personal M365 profile on iOS
Apologies if this has been answered elsewhere but I am struggling to understand the art of the possible here. I know that M365 iOS apps can handle multiple M365 accounts and specifically can handle a user having a work based M365 account and a personal M365 account. My question is whether you can configure Intune to mange the accounts so that the user can't accidentally or intentionally migrate data from one account to the other?
Although my iOS devices are company assets and use Intune to manage app protection policies for the corporate apps (outlook and all the MS Office apps), some of my users would like to be able to also access their personal M365 accounts and be able to use the same apps specifically OneDrive and MS Office apps. Is there a way to allow this without a user opening up a file from one account and saving it, sending it, or or copying/pasting it to the other account?
If this is possible could you please point me in the right direction to where I can find out more about making the appropriate app protection policies, conditional access controls and app based critical protections?
Many thanks in advance!!
Yes, it is very much possible to have both work and personal accounts added. You implement data protection policies using App Protection. Here is a good starting point. https://learn.microsoft.com/en-us/intune/intune-service/apps/app-protection-policy
3 Replies
- rahuljindalBronze Contributor
Yes, it is very much possible to have both work and personal accounts added. You implement data protection policies using App Protection. Here is a good starting point. https://learn.microsoft.com/en-us/intune/intune-service/apps/app-protection-policy
- cnewhouseCopper Contributor
Many thanks!
- jayr_barriosCopper Contributor
There's an Intune limitation for App Protection Policy, APP can restrict data movement between managed and unmanaged apps, but it cannot control data once it leaves the managed app ecosystem. Check this link: https://learn.microsoft.com/en-us/troubleshoot/mem/intune/app-management/app-management