Link to home
Start Free TrialLog in
Avatar of Dougj182
Dougj182Flag for Canada

asked on

Exchange 2013 mobile device remote wipe.

I Have a customer who is going to fire an employee soon. They want to make sure no sensitive data is left on the users phone. I know I can perform a remote wipe but this phone is the employees personal phone so I don't want to completely clear it. Is there a way to just remove the Exchange account and it's data remotely? This user is using an Android phone.

Thanks in advance.
Avatar of Ugo Mena
Ugo Mena
Flag of United States of America image

A remote device wipe can reset a mobile phone to the factory default condition. Although the remote device wipe protocol as implemented in Exchange 2013 only requires the deletion of personal corporate data, all current mobile device manufacturers interpret the command as one that wipes all data on the phone.

Many mobile device operating systems also wipe all data on any storage card that’s inserted in the mobile device.

This procedure will clear all data on the mobile phone, including installed applications, photos, and personal information.

Here is the KB article explaining the process more : Exhange 2013 Remote Wipe
ASKER CERTIFIED SOLUTION
Avatar of Ugo Mena
Ugo Mena
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of Dougj182

ASKER

@ Ultralites - This is what I thought. So I gather there is no way to delete only the exchange anccount and leave the remaining data in tact?

What do other businesses do in this situation? I suggested that they call me in when they are going to let her go so I can simply remove the account but they were unsure if she would allow anybody access to her device.
Typically the device is under the ownership of the company, so they end up returning it.

In this case, since you are not able to have the user give you access to remove the account,  I would just change the password to the account and disable access via OWA .

Given they own the device, they will start to get incorrect pwd prompts when it attempts to update, which will eventually force them to remove the account.
It is a delicate situation.... but uou may also be able to leverage the fact that you can wipe the whole device via Exchange, and just ask the user to pick which scenario they prefer.

1. Whole device wiped?
2. Allow you to remove the account?
Thanks, I'll do this.
For future people looking for a solution, I wanted to clarify what I believe to be a mistake in responses.

It is up to the exchange CLIENT APP to implement remote wipe.  So for example, I believe the new Outlook application for Android and iOS wipes only application data (definitely on iOS, but I thought Android too).

The Nine email client on Android -- one of my favorites -- keeps its own encrypted data storage, and so doesn't need device wipe capabilities.

So depending on the software the employee is using, remote wipe might only nuke the app data, not the whole phone, which makes it much more tolerable -- and clearly easier to achieve for IT folks. :)

HTH!