Event banner
MVPs on manageability: reflections from the MVP Summit
Event Ended
Tuesday, Apr 30, 2024, 08:00 AM PDTEvent details
The MVPs are back!!! By popular demand, Danny and Steve host another roundtable of Microsoft Most Valuable Professionals (MVPs). Join some familiar faces (and perhaps some new ones) as the gang break...
Char_Cheesman
Updated Dec 27, 2024
Dylangould
Apr 30, 2024Brass Contributor
I am running into a interesting issue.. Current workflow we have is when a employee is termed there AD account get disabled and then we no longer sync it to Azure AD therefore the user account gets deleted in azure. This has a good chance of happening before we get all the users equipment back and wiped in intune.
Issue I have is the user has a iOS device enrolled under Single Enrollment under the user but since the user is no longer in Azure the Device will never wipe when sending it a wipe command until the user is recovered back into Azure.. It feels weird for the device to stop talking to intune to get a wipe command if the device looses the user that is was enrolled under..
Apr 30, 2024
Yeah disabling it first is indeed not always best practise… did you taken a look at revoking sessions/blocking signin/password change before blocking the user?