android
65 TopicsGuidance with Outlook App Configuration Policies and Conf.Keys for Android
First off, I'm referring to the Configuration Key com.microsoft.intune.mam.AllowedAccountUPNs, documented here https://docs.microsoft.com/en-us/exchange/clients-and-mobile-in-exchange-online/outlook-for-ios-and-android/outlook-for-ios-and-android-configuration-with-microsoft-intune#organization-allowed-accounts-mode-settings-1 For Android, there is one Configuration Key listed, this one. The page doesn't tell us the value type, though by its name, it seems like it should be an array of strings. When it comes down to using it, we have to set it to String for the type, and then I'm having hit and miss results with the initial account setup. Sometimes, it's letting me setup just the UPN of the current user, and then later I can add additional accounts that are also listed in the array. This is what I would say is the good alternative to the On/Off switch for Organizational Accounts Only Mode. However, sometimes, new Outlook setups will show all the UPNs in the array, as if it is one string, which obviously doesn't work at all. I am hoping somebody can help me here with how this key is supposed to work, or not. Anyone have much experience with this that can shed any light? Thanks in advance.Solved8.2KViews0likes12CommentsDeploying and Activating Microsoft Defender on Android Kiosk Devices Without User Interaction
I’m working with an Android Kiosk device that deploys two applications. This device is enrolled under 'Corporate-owned dedicated devices' Enrollment Profiles and isn’t assigned to any specific user. Our company requires Microsoft Defender on all devices, but I’m encountering issues with Defender activation —it won’t activate without a user login. Since this is a dedicated Kiosk device with no assigned user, this setup doesn’t align well with our needs. Are there any options to deploy and activate Microsoft Defender on Android Kiosk devices without requiring user interaction? Any guidance on configuring Defender in this scenario would be greatly appreciated."206Views0likes3CommentsMobile keyboard issue: "Your organizations data cannot be pasted here" - Intune App Protection
I have an ongoing issue where I've setup an Intune app protection policy for unmanaged devices to restrict the ability to copy company data outside of company managed apps into personal apps. Whilst this feature works in respect to managed apps and non-managed apps, there is a UI issue on both Android and iOS where the keyboard clipboard shows straight after you copy text in a managed app: "Your organizations data cannot be pasted here". How do you stop this annoying popup that seems to relate to mobile keyboard clipboards? It's an annoying issue as users think they can't copy/paste between work apps. We have to tell them every time that if they just press down on screen then press paste, it pastes correctly. Example of our iOS policy is per below. Please help! There is also a good post here on it, will nil reply: Issue with Copy/Paste Restriction in Intune MDM on... - Android Enterprise Customer Community - 863794Views0likes0CommentsAndroid enrolment stuck at installing apps
Hi, We are seeing some issues lately with device enrolment on Android with the wizard getting stuck at installing required apps, even with one app (Intune). I've seen a few posts at the start of the year where this issue also persisted which suggested it was a Google issue, which would seem true here as the issue occurs across multiple tenants. So far we've tried: Leaving the device for 2 hours to install apps Different Android enrolment profiles (Dedicated is primary method) Enrolling via Knox and QR methods Multiple devices Multiple Wi-Fi networks Multiple tenants (one being completely green-field) Removing all entries of the device in Intune and Entra ID before attempting re-enrolment Removed all apps from configuration, leaving just the Intune app as default Unassigned all enrolment restrictions Intune does create a device entry for the device despite not reaching the home screen, with configuration policies showing as successfully applied. Registering the device with Entra is more temperamental though. As mentioned, Dedicated enrolment is our primary method. We did see that a previously enrolled device did successfully enrol when using Fully Managed but this doesn't help us. A new device that had never been enrolled before did enrol successfully and quickly but have yet to it again. We are using Samsung devices running Android 14.439Views0likes3CommentsIntune - Multi-App Kiosk Mode Android - Managed Home Screen - Can't return to Call Screen
Hi there, Here is the issue: In Multi-App Kiosk Mode for Android A user makes or receives a phone call that is long enough to trigger lock screen Call can continue indefinitely despite no longer seeing the Telephony UI Time to hang up, enter your passcode, you are taken to Managed Home Screen From here you can't access the Telephony UI and hence you can't hang up! The call interface Telephony UI is not an App on its own that you can Add to the Home Screen Any ideas welcome. Ta, Ian Hearnes37Views0likes0CommentsIntune Android PKCS {{OnPrem_Distinguished_Name}}
I've already make a Ticket January 2024 to Microsoft Support, the Issue is known but not in priority to fix it. If i build a pkcs profil for Android and will set a placeholder for AN CN={{OnPrem_Distinguished_Name}} the result in Certificates are CN="CN=XXXX,OU=XXXX,DC=XXXX". I mean the dubblequots are false implement in programming. If i use the same Placeholder on a iOS PKCS Profil the Certificate are korrekt issued CN=XXXX,OU=XXXX,DC=XXXX79Views0likes0CommentsApplication Protection Policy not applying to Microsoft 365 (office)
Hello Community, We have setup an APP for MS applications (android), that prevent users from saving attachments, or documents received by teams or even documents that reside on OneDrive to their local storage, we have also configured some security aspects like PIN code or biometric fingerprint to access the apps. Everything is working fine from Teams, Outlook, OneDrive, but when i use "Microsoft 365 (Office)" App, its like the policy is not applied to this specific application, i can download files, i can access the app with no need of PIN or Fingerprint, i can access a Word file and choose save as and put it in my local phone storage. i have already created a ticket to Microsoft, but they are veeery slow. can you please help.830Views0likes16CommentsSync GAL to Android & IOS devicees
Hi. Does anyone have a working way of synchronizing the GAL to IOS and Android devices' native contacts app? We are using intune, and i have tried with the app protection and app configuration policies, and with device configuration, and none of them give me the wanted result. I can manage to the the Sync turned on, and manually from the outlook app select single users to sync, which works - but not the entire GAL automaticlly..... I know there is alot of licensed 3. party software that can do this - i'm hoping someone here has an intune native solution to the issue..16KViews0likes9CommentsI dont understand how to add custom config to my app with android
Hi there I am struggling to understand how I can add custom config to my app on android so that when users download the app from intune, the config automatically is passed with the installation. The config is a key/value pair: qrCode: "{"applicationName":"LoremIpsum","baseUrl":"https://LoremIpsum.com.au/01/api/mobile/"}" acceptTermsAndConditions: true The qrCode value is a string The acceptTermsAndConditions value is a boolean I have managed to get this working with ios very easily. Ios app config provides a nice UI to add key/value pair (first image). Android (second image) however does not provide this UI to add config and I dont understand why. Appreciate if someone can tell me how to get android config to be entered like ios that would be amazing.185Views0likes0CommentsAndroid Device Enrollment Restriction- All Users Option Missing
We currently have a 3rd party MDM and are in the process of design and setup of the Intune solution. I wanted to create a default deny-all enrollment policy for personal devices until we get a solution developed so that personal smart devices don't end up in Intune. I set up the restriction policies for Windows, IOS and MacOS and assigned them to "All Users" just fine. When trying to do so for Android devices, the "All Users" option is missing. I have checked the all devices section and there are no devices enrolled. Any thoughts? Thanks.398Views0likes1Comment