Setting up the ultimate BYOD configuration for iOS and Android.

preview_player
Показать описание
Ever wondered what you can do to protect your organization data on those devices that are out of the management scope? In this demo I will show you how it's done.

If you have any question, let me know!
Рекомендации по теме
Комментарии
Автор

Thanks for this content, Alex !!!
Keep it going, please.

elkyu
Автор

Great video, did some configuration according to the advise given .. :)
Very clear. Keep up the good work!

MarkJorissenEindhovenNB
Автор

Exceptional content, easy to understand and follow.

incendary
Автор

Hi Alex. Do you have a video that covers the MAM app protection policy creation for IOS in a BYOD environment? This video had the steps for creating the policy for Android, but I'm also looking to create one for iOS.

TheGnygren
Автор

Great video Alex!
Maybe someone has asked this already
How can we add all apps such as Slack, or other 3rd party apps to be managed with policies also?
This is referring to Android and iOS devices that sign into our Slack account using our work SSO
Thank you!

sevagmanoukian
Автор

We have implemented Compliance Policy, App Protection Policy, Apple MDM Push cert and Conditional Access Policy that "Require Compliant device" to access Office 365. Situation is: users are already using M365 apps. Seems like the MDM enrollment is not being triggered because iOS users can continually use the Teams and Outlook even though they are not yet-MDM-enabled.

runmadhu
Автор

First time on your channel and I already know I'm going to like it because your company tenant is Dunder Mifflin 😂

MrMarcLaflamme
Автор

Hello Alex,
Thank you for this great video! It’s very informative! I’d like to ask a couple of questions if that’s okay. I’m failing new to this, so I hope my questions will make sense to you.

1. For app protection policies, do we need to have separate policies for iOS/iPadOS and Android, or a single policy can be applied to both device users? My concern is that I have all the users in one Entra Group, and I don’t know how it’d work if I assign two policies to the same group.

2. Can more than one Conditional Access policy be applied to the same group for BYOD? I’m thinking of device restrictions as well as device cleanup rules for devices that have not checked in for a certain number of days.

Thank you and appreciate it!

IsmailArici-lq
Автор

Brilliant Video many thanks for your help on this.

rajnorsk
Автор

Tnx Alex. Just the info that’s needed ;-)

marcellagcher
Автор

I think you missed on showing us how the Android device is enrolled and signed into but still I enjoy your content.

BACKSPINball
Автор

Looks great. Unfortunately the device type option (min 3:50) disappeared, it's not possible anymore to select unmanaged devices. I guess we have to make custom dynamic EntraID groups to assign the policy to? For example (device.deviceManagementAppId -eq null) and (device.deviceOSType -eq "Android") ?

sXRaider
Автор

what will happen if a user also used Outlook(or other microsoft apps) with his private mail and also want to use corporate email?

arjanv
Автор

Great vid. Thanks.
That handles access / DLP for corporate data.
But what about the "quality of life" features an MDM would allow for?
Is there some way to (force) deploy apps or app configurations, shortcuts etc. to unmanaged MAM devices? Greatly appreciated :)

hennibadger
Автор

i did the same settings, but i am still able to sign in with third party apps like mail app (iphone) and the policy not yet forcing the users app protection like it asked me to setup PIN code but i still can copy data from corp app to other apps! how long the policy need to be fully replicated?

ehababumoailish
Автор

I am a Business Manager Admin. I want to allow my user to BYOD or User Enrolment. What steps should I follow besides from Intunes.
Is there any way I can allow my users to enable sign in with their work account on their own device.

sharmajikashubham
Автор

Great video! < but for me doesn't work and it's pretty frustrating. Looks like it;s an easy set up, but my outlook on my iphonee will never follow any policies I set up

javierlujan
Автор

Hello! Does this work so as to prevent users from using the downloaded gmail app but rather use the approved gmail app in InTune?

DicksonNg-ddxh
Автор

@Alex de Jong is it possible to block adding Corp and Personal Outlook Or OneDrive account on a iOS BYOD device. Please advise how THanks

fortunatefaraz
Автор

I found this from the MS Documentation:
For Android devices, the Company Portal app is required to receive app protection policies.

This indeed is true. When I open Outlook for the first time with a targeted user there is a message saying that I also need the Company Portal..

patrick__