When it comes to Device management, the vast majority of settings and policies are optional, but the idea here is to create an environment that enables users to be productive, while keeping them safe at the same time. I have also updated the Azure AD checklist with this release, based on reader feedback, and to standardize the format for each guide. Similar to the checklist for Azure AD which I recently published, this resource is designed to get you up and running quickly with what I consider to be a good “baseline” for most small and mid-sized organizations. For contact information, check the Company Portal website.Update: Downloadable, printable copies of the Microsoft 365 Best practices checklists and guides are now available. Need additional support? Contact your IT support person. When you're ready to install Company Portal and enroll your device, see Enroll Windows 10/11 device. This restriction limits the sharing of work-related data.Įvery eight hours, enrolled devices sync with Intune to get the latest updates and policies from your org. Require you to accept terms and conditions.īlock you from using the device camera or screenshot feature. Require you to encrypt the data on your device to help protect company data, in case your device is lost or stolen. As another example, your org could limit how many times you can enter an incorrect password, and lock you out of the device after too many failed attempts. Set requirements on your device, like requiring you to have a device password or PIN. See the software installed on the device, including software you've personally installed. Personal data and settings aren't removed. Remove work-related files and business apps. This is helpful if the device is lost or stolen. Reset your device back to the manufacturer's default settings. When you enroll your device, you are giving IT support permission to: Your IT support person can install work apps and updates on your device. IT support can't view or make changes to anything on your hard drive. This is the same kind of access that Intune needs on a mobile device (for example, on an Android or iOS device). Intune requires access to the hard drive so that it can verify that the device meets device and security requirements. If your organization requires it, anti-malware and virus software is installed on the device. Your support person can automatically update this software. Software installs on the device that enables your organization to manage the device. In addition to everything under What happens on all devices after enrollment, after you enroll a Windows device in Intune: What happens on Windows PCs after enrollment You can reset your phone to factory settings if it's lost or stolen. Your work or school email is automatically set up. You can install work or school apps from the Company Portal website and app, and access them by signing into your work or school account. You can access your org's network, email, and work files on the device. What happens on all devices after enrollmentĪfter you enroll a device for work or school using Intune Company Portal: This article describes what to expect once you've enrolled your device for work. The Company Portal app also monitors your device settings to make sure they meet your organization's requirements, and syncs things (like apps, policies, and updates) from your organization to your device. By enrolling your device in Intune, you get secure access to work or school apps on your mobile device, and access to apps in Intune Company Portal.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |