Home

Device Model wise Restrictions in the Hybrid Intune

%3CLINGO-SUB%20id%3D%22lingo-sub-87799%22%20slang%3D%22en-US%22%3EDevice%20Model%20wise%20Restrictions%20in%20the%20Hybrid%20Intune%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-87799%22%20slang%3D%22en-US%22%3E%3CP%3EHi%20Guys%2C%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EI%20need%20help.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EEnvironment%20%3A%26nbsp%3B%3C%2FP%3E%3CP%3EIntune%20associated%20with%20Configuration%20Manager%202012%201702%2C%20We%20manage%20Android%2C%20WP%208.1%2C%20WM10%20and%20iOS%20devices%20with%20Intune.%20We%20have%20Exchange%20Online%20subscriptions.(Office%20365%20Enterprise%20E3%20without%20Pro%20Plus).%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EProblem%20%3A%20We%20have%20allowed%20all%20users%20to%20enroll%20the%20devices%20with%20Intune%20and%20access%20email%20and%20other%20Apps%20however%20we%20have%20not%20declared%20all%20the%20devices%20as%20Authorized.%20We%20publish%20a%20list%20of%20Authorized%20device%26nbsp%3Bmodel%20Numbers.%20We%20do%20not%26nbsp%3Bwant%20our%20employees%20to%20enroll%20Any%20Andoird%20device.%20We%20are%20using%20Conditional%20access%20but%20it%20does%20not%20have%20option%20to%20disable%20unAuthorized%20device%20model%20numbers.%3C%2FP%3E%3CP%3EThus%2C%20We%20have%20created%20a%20collection%20in%20Configuration%20Manager%26nbsp%3Bfor%20unauthorized%20devices.%20We%20have%20to%20manaully%20delete%20such%20users%20after%20certain%20persiod%20of%20time.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EDo%20we%20have%20any%20option%20which%20will%20Automate%20the%20above%20mentioned%20process%3F%20Can%20we%20set%20the%20condition%20for%20users%2FDevices%20which%20will%20enable%20only%20certain%20set%20of%20Device%20Model%20numbers%20for%20enrollment%3F%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-87799%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EConditional%20Access%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EIntune%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EMobile%20Device%20Management%20(MDM)%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-89353%22%20slang%3D%22en-US%22%3ERE%3A%20Device%20Model%20wise%20Restrictions%20in%20the%20Hybrid%20Intune%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-89353%22%20slang%3D%22en-US%22%3E%3CP%3EThis%20feature%20is%20not%20in%20the%20Current%20Branch%20of%20Configuration%20Manager%20(1702)%20yet%2C%20but%20it%20is%20in%20the%20latest%20Technical%20Preview%20of%20CM%20if%20you%20like%20to%20test%20it%20out.%20It%20will%20more%20than%20likely%20be%20available%20in%20the%20next%20CB%20release.%20It%20is%20already%20available%20for%20those%20who%20only%20use%20the%20Intune%20portals.%3C%2FP%3E%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20style%3D%22width%3A%20332px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Fgxcuf89792.i.lithium.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F17544iEEDEFE6AC1935C6F%2Fimage-dimensions%2F332x349%3Fv%3D1.0%22%20width%3D%22332%22%20height%3D%22349%22%20alt%3D%22tp1706.PNG%22%20title%3D%22tp1706.PNG%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E
Rohan Harmalkar
Occasional Visitor

Hi Guys,

 

I need help.

 

Environment : 

Intune associated with Configuration Manager 2012 1702, We manage Android, WP 8.1, WM10 and iOS devices with Intune. We have Exchange Online subscriptions.(Office 365 Enterprise E3 without Pro Plus).

 

Problem : We have allowed all users to enroll the devices with Intune and access email and other Apps however we have not declared all the devices as Authorized. We publish a list of Authorized device model Numbers. We do not want our employees to enroll Any Andoird device. We are using Conditional access but it does not have option to disable unAuthorized device model numbers.

Thus, We have created a collection in Configuration Manager for unauthorized devices. We have to manaully delete such users after certain persiod of time.

 

Do we have any option which will Automate the above mentioned process? Can we set the condition for users/Devices which will enable only certain set of Device Model numbers for enrollment?

 

1 Reply

This feature is not in the Current Branch of Configuration Manager (1702) yet, but it is in the latest Technical Preview of CM if you like to test it out. It will more than likely be available in the next CB release. It is already available for those who only use the Intune portals.

tp1706.PNG

Related Conversations
Tabs and Dark Mode
cjc2112 in Discussions on
35 Replies
Extentions Synchronization
Deleted in Discussions on
3 Replies
Security Community Webinars
Valon_Kolica in Security, Privacy & Compliance on
9 Replies
flashing a white screen while open new tab
Deleted in Discussions on
14 Replies