BYOD
7 TopicsWork Profile Contacts in Android Auto BYOD
Hey there, is it possible to List the Contacts from the Android Work-Profile in Android Auto? People in our Organization are not able to search for Work-Profile-Contacts via Android Auto. When Contacts from the Work-Profile are calling, the Name is showing up correctly and is also correctly displayed in the caller history, but when using the Phone app on the cars display it's not possible to find the contacts. What have we tried so far: Installed Android Auto App on Work-Profile Enabled "Connected Apps" Contact Sync via Outlook App Contact Sync via Gmail / Google Contacts Installed Google Phone App on both profiles and set it to the Default call Application Installed Samsung Phone App on both profiles and set it to the Default call Application Enabled the Work Profile Switch in the Android Auto setting (seems only usefull for notifications) Tried different Phone and Car Vendors One more Information: When Using the Call or Contact App on Personal-Profile and searching for Work Contacts, they are showing up as expected. I believe maybe it's not supported by Google? Is anybody facing the same issue or are there some Workaround i have not thought about=Solved95Views0likes2CommentsConditional access blocks, even when Smartphone is marked as compliant
Hi Everyone. I'm trying to access my Exchange Mailbox over the Gmail App on my Pixel 8 Pro. Now my Problem is that a conditional access policy is blocking the access. I've created a policy that grants access to the "Office 365 Exchange Online" Resource, if passwordless MFA is satisfied and the device is marked as compliant. At the beginning I was trying to grant access if the Gmail App is protected by an app protection policy, which didn't work because Gmail does not support app protection policies, so I turned that off. So, my Smartphone is a BYOD and I've enrolled it into Intune with the "Android (personally-owned work profile)" enrollment method. A compliance policy is assigned, and Intune shows me that the device is compliant. Intune deploys the Gmail App to my work profile. I've read several documentations and I also deployed Google Chrome, Google Calendar and the Bing Search App just to be sure. But it still blocks access to the resource. I also made an Email configuration profile, to auto-setup the Gmail App with my Credentials. So everytime I open the Gmail App in my Work Profile, it tries to setup the account, I get an MFA number-matching prompt from MS Authenticator and then it tells me to download the company portal app and enroll my smartphone into Intune. Strange behavior because as I mentioned above, my Phone is indeed managed and marked as compliant in Intune. I was going through the Sign-in Logs, and I've seen that every logged attempt claims that the device is not compliant and not even managed. I feel like that I'm missing a big point. I would be thankfull if anyone has an idea to solve this ❤️ Thanks.Solved2.1KViews0likes2CommentsBYOD security for desktops - Windows/Mac
What is the best method to secure a Windows or Mac BYOD device without enrolment? Can Intune App Protection policies be applied to desktop client applications - Teams/Outlook/Word/Excel/PowerPoint? E.g., If a user is allowed to use Outlook or Teams desktop app on their personal Windows laptop, can that user be prevented from downloading an attachment or a file from within teams. How about stopping the user from taking a screenshot? Or true BYOD security can only be achieved with enrolment of the device in Intune? If yes, it will be problematic as end users will not be happy to enrol their personal devices into Intune.5.5KViews0likes6CommentsAndroid Enterprise COPE Device Restrictions lacking basics (compared with (Personal) Work Profile)
I've noticed that the available options in Device Restrictions configuration profiles for COPE devices do not include the "Work profile settings" set, like the Personally-owned Work Profile Device Restriction configuration profiles do. Things like blocking copy/paste between Personal and Work profiles, essentially all the settings that are available and described here - https://docs.microsoft.com/en-us/mem/intune/configuration/device-restrictions-android-for-work#personally-owned-devices-with-a-work-profile-settings Does anyone know, is there a detour-like solution to get these controls available for COPE devices?1.9KViews0likes0CommentsWhat BYOD options of deployment do I have with Intune
Hi all, We are in the process of looking at allowing users using their own laptops, mobile phones and/or tablets. I am unsure what options in Intune I have to allow access to company data and/or apps. We do currently use Intune MDM for iOS devices and a small number of Android mobile phones. (both are company owned devices). I am aware of MDM and MAM but unsure which one I want to use for personal devices. Those devices could be Windows 10 home laptops, Personal Android mobiles, Android tablets, iPhones or iPads. Can I use MDM and MAM simultaneously or do we have to pick one or the other? MAM as I understand it allows me to protect apps/data on devices that are not managed via Intune in supported applications where i can do rules such as do not allow to save or copy files from Onedrive to the local device. MDM is mobile device management where they can either be corporately enrolled or a user can enroll his/her own device.8.4KViews0likes3CommentsSecuring data on BYOD
I am looking for some advice on best practice for protecting corporate data on personal Windows devices. All data is residing in O365 and and we already have App Protection Policies in place to protect data on iOS and Android devices. All users are licensed for O365 E5 EMS and AD P1. Our requirements are to only allow devices to access O365 data from Windows 10 devices with antivirus and disk encryption. We also want to restrict the ability to date data locally, outside of enterprise apps. We have tested with App Protection Policies and Conditional Access however are unable to get the policies to take effect. Any advice on the best approach to achieve this would be greatly appreciated!3.9KViews0likes2CommentsTargeting different intune policies to different devices for the same users.
Hi all, I'm looking at deploying Intune Standalone as a migration from SCCM Hybrid Intune and I'm looking to improve user experience while I can. Talking about iOS devices here, we have users who might potentially have a corporate iOS device (which hasn't been set up through DEP) that has been configured by our helpdesk as if it was a personal device and handed to the user, and a personal device which they've self-enrolled. We'd like the user to get different polices depending on whether or not they're using a personal device or a corporate device. Are there any options here? From what I understand, I can't target a user group for the corporate policy and then set an exclude for a device group containing their BYOD device. Is our only option to implement DEP Then use dynamic group memberships? Is there something dumb I'm missing? Appreciate any thoughts.Solved11KViews0likes5Comments