Link to home
Start Free TrialLog in
Avatar of IT _Admin0723
IT _Admin0723Flag for United States of America

asked on

Intune MAM - BYOD - Mobile Phones and PCs

Dear experts,
We would like to find out if our BYODs (mobile phone = IOS/Androids AND Windows PCs/MACs) can use Intune MAM (without enrollment) aka 'non-domain joined'. Can someone please shed some light? Can we use app protection policies on these non-domain joined devices not enrolling with Intune MDM? FYI, we use Blackberry UEM as our EMM/MAM for mobile phones....

In addition, On BYOD PCs, not domain joined, can desktop Outlook be managed to perform the following?
•    Provide remote wipe of any OSTs and PSTs associated with the Office 365 tenant
•    Provide restrictions on storage of email and attachments. i.e. Not allow desktop Outlook to save attachment to local computer/desktop, only to OneDrive
•    Continue to allow desktop Outlook to access personal accounts
•    Restrict OneDrive files from being moved to local computer/desktop or sent with other mail clients
•    Provide remote wipe of any cached local OneDrive for desktop files
•    Restrict desktop Office applications, Word, Excel, PowerPoint similarly

Thanks!
ASKER CERTIFIED SOLUTION
Avatar of Mahesh
Mahesh
Flag of India image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of IT _Admin0723

ASKER

@Mahesh - thank you for the info. So we have to move to Windows 10 to fully leverage data control on our BYODs? **we are currently in Windows 7..
Yes that is true
You may install Intune client on windows 7 device and check if you can control it, however app restriction policies are specifically innovated for Windows 10 Only
https://docs.microsoft.com/en-us/intune/manage-windows-pcs-with-microsoft-intune