Microsoft Intune App Deployment to Personal IOS and Android devices

Nithyanandham Singaravadivelu 6 Reputation points
2024-05-09T11:52:38.81+00:00

Hi All,

Please clarify the below points, My company wanted to enroll the users Android and iOS BYOD devices in to Microsoft Intune.

Requirement 1 : I am planning to use the enrollment type "user enrollment with company profile" for iOS/iPads for BYOD devices, then create compliance policies, apply app protection policies and App deployment policies

Requirement 2 : I am planning to use "Android for Work profile" for Android BYOD devices, then create compliance policies, apply app protection policies and App deployment policies

Before i proceed further on these requirements, My question is, If users were using their personal devices with few apps, for example outlook for IOS APP or outlook for Android APP configured with users personal E-mail profile, If we wanted to manage outlook for IOS APP or outlook for Android APP through Microsoft Intune, Should we need to ask the users to remove the outlook App from their personal devices, and then do we need deploy the same outlook APP from Microsoft Intune to IOS and Android BYOD devices ?

Not only for Outlook APP, How we can handle this type of situations when the apps that we wanted to deploy and manage through Microsoft Intune is already present in the user BYOD devices (Android and IOS) ?

@Rudy Ooms if you could share your thoughts it would be really helpful

Microsoft Intune Application management
Microsoft Intune Application management
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Application management: The process of creating, configuring, managing, and monitoring applications.
891 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,456 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. ZhoumingDuan-MSFT 8,840 Reputation points Microsoft Vendor
    2024-05-10T05:12:34.72+00:00

    @Nithyanandham Singaravadivelu, Thanks for posting in Q&A.

    For your issue, you can manage apps deployed from Intune as well as non-Intune deployed apps via Intune policy.

    And please note that the application must be an Intune protected app.

    https://learn.microsoft.com/en-us/mem/intune/apps/apps-supported-intune-apps

    Hope it will help.

    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments

  2. Nithyanandham Singaravadivelu 6 Reputation points
    2024-05-10T07:23:24.93+00:00

    Hi @ZhoumingDuan-MSFT

    Lets take the below mentioned scenario's

    Scenario 1 : For IOS\Ipads personal devices enrollment to Intune

    I have a enrollment profile created in Microsoft Intune for "user enrollment with the company portal", I am going to ask my users to enroll their personal iOS devices via Intune company portal, the user's personal device already has the outlook App installed and configured with the personal email profile. In this case, After the device is enrolled in to Microsoft Intune, I wanted to protect the corporate data accessed by the users in outlook App.

    1. After the device enrollment I understand, the outlook App which is already present in the users personal device can only be used inside the personal container ?
    2. If my understanding is correct, Should i need to deploy the outlook app again from the Microsoft Intune, So that the newly deployed outlook App is only available inside the work container and that can be managed via App protection policy ?

    Scenario 2 : For Android personal devices enrollment to Intune

    I am going to ask my users to enroll their personal Android devices via Android for Work profile method, the user's personal device already has the outlook App installed and configured with the personal email profile. In this case, After the device is enrolled in to Microsoft Intune, I wanted to protect the corporate data accessed by the users in outlook App. In this case, After the device is enrolled in to Microsoft Intune, I wanted to protect the corporate data accessed by the users in outlook App.

    1. After the device enrollment I understand, the outlook App which is already present in the device can only be used inside the personal container ?
    2. If my understanding is correct, Should i need to deploy the outlook app again from the Microsoft Intune, So that the newly deployed outlook App is only available inside the work container and that can be managed via App protection policy ?