Intune Bitlocker for USB/external drive (Missing policy for Azure AD Join scenario)

Brass Contributor

When we enable intune policy: Block write access to devices configured in another organization in Intune Bitlocker policy

Pa_D_1-1620147429993.png

 

We also need to deploy an Onprem GPO policy: Provide unique identifier for your organization.

This will allow the PC to differentiate the Org it belongs to.

Pa_D_3-1620147536779.png

GPO policy: Provide unique identifier for your organization is missing in Intune.

Because of this we cannot use Intune policy: Block write access to devices configured in another organization.

 

Looking for suggestions how we implement Block write access to devices configured in another organization in Intune for Azure AD Join (not hybrid domain join)?

 

 

 

0 Replies