Use of Managed Open In in general apps

%3CLINGO-SUB%20id%3D%22lingo-sub-2154474%22%20slang%3D%22ja-JP%22%3EUse%20of%20Managed%20Open%20In%20in%20general%20apps%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2154474%22%20slang%3D%22ja-JP%22%3E%3CP%3EMy%20company%20uses%20ios%20terminals%20as%20COPE%20(Corporate%20Owned%2C%20Personally%20Enabled).%3C%2FP%3E%3CP%3ETherefore%2C%20I%20want%20to%20use%20Managed%20Open%20In%20because%20I%20don't%20want%20the%20company%20information%20to%20be%20leaked%20to%20the%20outside.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EIf%20it%20is%20OutLookApp%20or%20OneDriveApp%2C%20I%20think%20that%20it%20can%20be%20controlled%20by%20the%20app%20protection%20policy%2C%20but%20will%20it%20be%20out%20of%20control%20for%20other%20apps%3F%20%3CBR%20%2F%3E%20For%20example%2C%20I%20would%20like%20to%20use%20the%20Managed%20Open%20In%20of%20the%20Google%20Drive%20app%20and%20Gmail%20app.%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-2154474%22%20slang%3D%22ja-JP%22%3E%3CLINGO-LABEL%3EIntune%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EMobile%20Application%20Management%20(MAM)%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2155141%22%20slang%3D%22en-US%22%3ERe%3A%20Use%20of%20Managed%20Open%20In%20in%20general%20apps%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2155141%22%20slang%3D%22en-US%22%3E%3CP%3EHello%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F974081%22%20target%3D%22_blank%22%3E%40_MyUsername%3C%2FA%3E%26nbsp%3B%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EAs%20far%20as%20I%20know%20most%20of%20the%20supported%20applications%20have%20already%20been%20added%20to%20the%20App%20protection%20policy%20Public%20apps%20list%20(that%20includes%20non-Microsoft%20apps)%2C%20meaning%20if%20the%20Google%20apps%20are%20not%20included%20there%20it%20most%20likely%20means%20that%20those%20applications%20cannot%20be%20controlled%20via%20Microsoft%20Endpoint%20Manager%20proprietary%20policies%20using%20%22Intune%20App%20SDK%22.%3CBR%20%2F%3E%3CBR%20%2F%3ESo%20there%20is%20probably%20no%20good%20way%20to%20include%20Google%20apps%20using%20the%20same%20tools%20as%20Microsoft%20apps.%26nbsp%3B%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EThere%20is%20a%20list%20of%20supported%20apps%20listed%20here%3A%20%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fmem%2Fintune%2Fapps%2Fapps-supported-intune-apps%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3ESupported%20Microsoft%20Intune%20apps%20%7C%20Microsoft%20Docs%3C%2FA%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2155282%22%20slang%3D%22en-US%22%3ERe%3A%20Use%20of%20Managed%20Open%20In%20in%20general%20apps%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2155282%22%20slang%3D%22en-US%22%3E%3CP%3EHello%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F41545%22%20target%3D%22_blank%22%3E%40Alo%20Press%3C%2FA%3E%26nbsp%3B%3CBR%20%2F%3E%3CBR%20%2F%3EThank%20you%20for%20your%20response.%3CBR%20%2F%3E%3CBR%20%2F%3EAre%20you%20talking%20about%20the%20attached%20part%3F%3CBR%20%2F%3EIf%20so%2C%20the%20Google%20Drive%20App%20doesn't%20seem%20to%20support%20it.%3CBR%20%2F%3E%3CBR%20%2F%3EI%20will%20think%20about%20future%20measures.%3CBR%20%2F%3E%3CBR%20%2F%3ERegard%3CBR%20%2F%3E%3CBR%20%2F%3E%3CBR%20%2F%3E%3CBR%20%2F%3E%3CBR%20%2F%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E
New Contributor

My company uses ios terminals as COPE (Corporate Owned, Personally Enabled).

Therefore, I want to use Managed Open In because I don't want the company information to be leaked to the outside.

 

If it is OutLookApp or OneDriveApp, I think that it can be controlled by the app protection policy, but will it be out of control for other apps?
For example, I would like to use the Managed Open In of the Google Drive app and Gmail app.

3 Replies

Hello @_ShinyaKobayashi 

 

As far as I know most of the supported applications have already been added to the App protection policy Public apps list (that includes non-Microsoft apps), meaning if the Google apps are not included there it most likely means that those applications cannot be controlled via Microsoft Endpoint Manager proprietary policies using "Intune App SDK".

So there is probably no good way to include Google apps using the same tools as Microsoft apps. 

 

There is a list of supported apps listed here: Supported Microsoft Intune apps | Microsoft Docs

Hello @Alo Press 

Thank you for your response.

Are you talking about the attached part?
If so, the Google Drive App doesn't seem to support it.

I will think about future measures.

Regard




@_ShinyaKobayashi Yeah, exactly! 

 

One way to work around that is to set "Save copies of org data" to Allow or

add the Local Storage option to "Allow user to save copies to selected services"

 

workaround.png

 

This does pretty much break the DLP logic but might "solve" your immediate problem of missing access to Google Drive. 

 

Reference to config information: iOS/iPadOS app protection policy settings