Managing Mobile Devices

We are currently in Office365 and use Intune for desktop management. Many of our users use their mobile devices to access their e-mail.
We'd like to look at using Intune's Mobile Device Management capabilities but I have a question. If we were to choose (on the Admin - Mobile Device Management page) to make Intune our manger, by turning that option on am I going to affect any of our current
users that are using "un-managed" devices to access Office365 e-mail? We'd like to setup a pilot group before rolling it out agency wide.
Thank you.

Hi,
No, you deploy that policy when you want to and to a group if you like so you can limit and test conditional access for office365. so no problem in turning on MDM.
Regards,
Jörgen
-- My System Center blog ccmexec.com -- Twitter
@ccmexec

Similar Messages

  • Manage Mobile Device missing in Exchange Management Console

    Exchange 2007 SP1.
    So up until now, my organization did not support ActiveSync and we had it disabled for all users.
    This summer this will change, and we will start allowing ActiveSync devices to connect.
    As a pilot group I enabled 3 users.  They all connected with their devices days ago (two on Monday, the other on Tuesday).  When looking them up in the Exchange Management console, the Manage Mobile Devices option is not visible.
    If they go into OWA, their devices and all management options are listed there.
    I realize that I could go into ADSIedit and set msExchMobileMailboxFlags to 1 and then it would show up.  That isn't really my concern though. 
    My concern is that when a user leaves the company, we would like to be able to go into EMC and issue a wipe of their device, not have to give ourselves permission to their mailbox, log in to their mailbox via OWA, and issue the wipe there.
    Anybody know why this happens (why a user with a mobile device doesn't get the Manage Mobile Device option in EMC)?
    Thank you

    Hi
    Here's a link for how to wipe a device remote
    http://technet.microsoft.com/en-us/library/aa998614%28EXCHG.80%29.aspx
    Hope it will be helpful for you!
    Jonas Andersson MCTS: Microsoft Exchange Server 2010, Configuration | MCITP: EMA | MCSE/MCSA Blog: http://www.testlabs.se/blog
    Thanks for the link, but I know how to perform a remote wipe.
    My question would be why does the "Manage Mobile Devices" button not appear when highlight some users that do have Mobile Devices?  Yes I could go into the OWA of their mailbox to wipe their device.  Yes, I could use the Shell to wipe
    their devices.  But neither of these would be as convenient as just going into Manage Mobile Devices via Exchange Management Console and performing a wipe there.  Especially for my user admins.
    Right now I am basically looking at creating some script that goes in and makes sure that "msExchMobileMailboxFlags" is set to 1 for every user that has ActiveSync enabled.  My main issue is that I feel I shouldn't have to do this. :P

  • Manage Mobile Devices in Configuration Manager

    Hello how are you?
    I want to deploy applications, Updates and uninstalls applications on devices:
    IOS
    Windows Phone 8
    Windows 8.1
    Androi
    I see that there are four methods that are:
    Enrollment by Windows Intune
    Enrollment by Configuration Manager
    Mobile device client legacy
    Exchange Server connector
    of the four methods which support such devices?
    My client does not want to use Windows Intune is possible with any other method???

    If your client does not want to use Windows Intune then they will not be able to carry out the management they require using Microsoft products.
    Note that you can use Intune on it's own to manage mobile devices. However, for a richer management experience, it's better to integrate Intune with ConfigMgr.
    Gerry Hampson | Blog:
    www.gerryhampsoncm.blogspot.ie | LinkedIn:
    Gerry Hampson | Twitter:
    @gerryhampson

  • Manage mobile device (Android) without internet connection

    Hi,
    I would like to manage some Android devices on my SCCM 2012 R2 server. But it hasn't any internet connection. Is it possible to install a local software like Windows Intune?
    Sorry for my bad english, I'm from Switzerland :)

    You need an external routable domain name so yes, if you don't have one you need to buy it. Then you add this domain to your subscription to be verified. You will find all the information and the process in this document that I've done
    https://gallery.technet.microsoft.com/Mobile-Device-Management-a23ffe2a
    Gerry Hampson | Blog:
    www.gerryhampsoncm.blogspot.ie | LinkedIn:
    Gerry Hampson | Twitter:
    @gerryhampson

  • Manage mobile devices by SCCM2012 R2+Intune, Intune Admin Portal

    If mobile devices are configured and managed by SCCM, should these mobile devices also appear in the in the Intune Admin console ?

    This might be helpful
    http://gallery.technet.microsoft.com/Mobile-Device-Management-a23ffe2a
    Gerry Hampson | Blog:
    www.gerryhampsoncm.blogspot.ie | LinkedIn:
    Gerry Hampson | Twitter:
    @gerryhampson

  • Microsoft Intune was unable to set the desired mobile device policy for one or more users due to the following error: A2CE0100

    Hi!
    We have fatal or critical error message on Microsoft Intune Portal but all agents are working just fine. Before opening support ticket we would like to hear comments from the experts on this forum. We would also like to fix this error before starting to
    manage mobile devices with Intune.
    Error message on Intune Portal:
    "Microsoft Intune was unable to set the desired mobile device policy for one or more users due to the following error: A2CE0100"
    Repeated: 19 times.
    Class: (System) Policy
    Random Fatal error message on C:\Program Files\Microsoft\OnlineManagement\Logs\PolicyAgent.log found from one Windows 8.1 client:
    2015-02-21 08:49:20:704 2852 1ab0 FATAL: DocumentProvider::IndicateToConsumer/pp->ProcessPolicies(NULL, NULL, NULL, NULL) failed with error 0x800704d5.
    That said, we are not facing any specific problem but we would like to find symptom of this repeating error message on Intune Portal . We would appreciate to get any thoughts about this case.
    Br.
    Jukka

    Hi Jukka,
    Mobile policy doesn't apply to clients using the Full Client download.  Please open a support case so the team can assist in further troubleshooting.
    Thanks,
    Jon L. - MSFT - This posting is provided "AS IS" with no warranties and confers no rights.

  • Why is ITunes 11 not recognizing mobile devices?

    I recently performed a normal software update which consisted of the ITunes 11, the current version of ITunes.  Everything appears to be working properly, with the exception of managing mobile devices.  When plugged in, no prompts, windows, displays, or notifications of any kind appear as in previous versions of ITunes for mobile devices such as IPhone or IPad. 
    I went up into the drop down bar, and was able to find a tab labeled, "devices".  When you scroll to the options under devices, everything was grayed out and I was unable to synch, back up, etc anyting plugged in. 
    How am I able to remedy this issue?  Any suggestions encouraged.  Thanks for your time. 

    Trouble Ticket Thread with same issues: https://discussions.apple.com/message/20581468#20581468

  • Access mobile device directories

    hiii
    i have a project where i need to access(view,manage) mobile device directories.
    I m new to J2ME. Dont know where to start from. Even dont know it is possible with J2ME. If it is, how can i do that.
    Thanks in advance

    You posted here, so you hopefully have CDC and Personal Profile in your J2ME, is that right? If yes, then you can use java.io package (CDC):
    http://72.5.124.55/javame/reference/apis/jsr218/java/io/package-summary.html
    and file dialog (PersonalProfile):
    http://java.sun.com/javame/reference/apis/jsr216/java/awt/FileDialog.html

  • Questions on mobile device management

    Hi All,
    I'm not sure where to post this question since I couldn't find a forum specific to Afaria, so thought someone here might be able to help.
    1. Afaria mobile device management solution claims that data and content is backed up and can be deleted if a device is stolen or lost. Can this deletion be done if the mobile is switched off of the SIM card has been removed? What is the mechanism of the data deletion process when the device is either ON/OFF?
    2. How does Afaria handle online and offline user authentication? If a mobile app is opened, can Afaria be configured to force the user to enter credentials for authentication? Or should there be a separate login page as a part of the mobile app? (The user's credentials are needed to find his role from LDAP and the rest of the app to work properly, which is y the question).
    Thanks & Regards,
    Vaishnavi

    This forum is fine for Afaria discussions and questions, no worries. 
    1.  If mobile device is switched off or not network connected then Afaria is not able to do anything with that device.  The content though would be secured, encrypted etc. so that there should be no risk as long as the device is switched off.  The "kill device" command that can be sent from Afaria will work if device is turned on and connected to a network.
    2.  Afaria can force quite a lot of things and one of them is regarding the device itself, forcing a password/pin type of unlocking.  The mobile app normally has it's own mechanism for authentication, user name and password.  That is a SUP function and has little to do with Afaria, I don't believe Afaria can force that part of authentication. 
    You can get a good overview of the technical part of Afaria here:  [Afaria Technical White paper|http://www.sybase.com/files/White_Papers/Afaria-Technical-WP.pdf]

  • The newest version of iTunes is awful when it comes to Cloud syncing-file management. I'm constantly frustrated with what iTunes 'chooses to eliminate from my mobile device and settings aren't fine-grained enough to allow for real user control.

    I'm endlessly frustrated with iTunes Cloud syncing, something that was supposed to make lenjoying my music easier. I routinely find that, though itunes and podcasts have been split, iTunes arbitrairily removes music files or in progress podcast in favor of 'new' podcasts. The settings are just not fine-grained enough to allow true user control and so we are instead subjected to 'Apple knows best' protocols. I understand and appreciate the level of exacting control Apple excercises over their ecosystem, however, more and more often I see them tightening control over things that should be user control while dropping the ball on aesthetic desisions made in producing their own software (see the hideous pull down tab for iTunes to access Podcast, TV shows, Music, etc.
    I would like to see features like those in Mail and the Podcasting apps implemented in iTunes afor the management of content on mobile devices, for instance it would be great to swipe to delete files that you know longer want on your device, at both the album and song level. Another issues is the new pushiness of iRadio and iTunes Store, the app now seems to default to the iRadio page (versus the last page Albums, songs, etc. that the user was navigating, or in the instance of the iTunes Store push, if I doon't have all the tracks of an album i own on my mobile device 'complete my album' takes you to iTunes store rather than showing the 'cloud' download icon next to missing tracks. These are the tactics I expect from Google, not Apple (pushing commerce over quality user experience).
    Fix these things Apple, please.

  • IPod touch 5th gen will not connect to iTunes, also apple mobile device usb driver does not appear in device manager. PLEASE HELP.

    I recently purchased my iPod touch with no issues. After updating to iOS 8.1.1 I found that my iPod would no longer appear in the latest version of iTunes and when I searched for Apple Mobile Device usb driver in the device manager, it was nowhere to be found. I've already uninstalled and re-installed ALL components of iTunes and read every single help article. I've tried everything. What went wrong?

    See
    iOS: Device not recognized in iTunes for Windows
    - I would start with
    Removing and Reinstalling iTunes, QuickTime, and other software components for Windows XP
    or                     
    Removing and reinstalling iTunes and other software components for Windows Vista, Windows 7, or Windows 8
    However, after your remove the Apple software components also remove the iCloud Control Panel via Windows Programs and Features app in the Window Control Panel. Then reinstall all the Apple software components
    - Then do the other actions of:
    iOS: Device not recognized in iTunes for Windows
    paying special attention to item #5
    - New cable and different USB port
    - Run this and see if the results help with determine the cause
    iTunes for Windows: Device Sync Tests
    Also see:
    iPod not recognised by windows iTunes
    Troubleshooting issues with iTunes for Windows updates
    - Try on another computer to help determine if computer or iPod problem

  • ITunes won't recognize my iPod. I have the Apple Mobile Device USB driver installed in my programs but it doesn't show up in my Device Manager or Services. Can someone help?

    So I connected my iPod to iTunes and an error message came up saying it needed an updated version of iTunes 64 bit and I was missing the Apple Mobile Device USB driver so I downloaded it because another discussion said that was the solution. I did but it wont show up in my device manager or services. Can someone help me figure out whats wrong?

    See
    iOS: Device not recognized in iTunes for Windows
    - I would start with
    Removing and Reinstalling iTunes, QuickTime, and other software components for Windows XP
    or              
    Removing and reinstalling iTunes and other software components for Windows Vista, Windows 7, or Windows 8
    However, after your remove the Apple software components also remove the iCloud Control Panel via Windows Programs and Features app in the Window Control Panel. Then reinstall all the Apple software components
    - Then do the other actions of:
    iOS: Device not recognized in iTunes for Windows
    paying special attention to item #5
    - New cable and different USB port
    - Run this and see if the results help with determine the cause
    iTunes for Windows: Device Sync Tests
    Also see:
    iPod not recognised by windows iTunes
    Troubleshooting issues with iTunes for Windows updates
    - Try on another computer to help determine if computer or iPod problem

  • Windows 8.1 mobile device management using integrated environment of SCCM 2012 R2 and Windows intune

    Can we avoid the dependency on the Symantec certificate  for enabling windows phone enrollment under Administration->Cloud services -> Windows InTune subscriptions - Windows Phones. My environment will have only windows 8.1 phones.
    Regards
    Leela

    See http://status.manage.microsoft.com/StatusPage/ServiceDashboard. 
    Engineers are investigating a service issue impacting access to portal via mobile devices.
    (Started on 12/30/2014 8:00:00 AM UTC)
    1/8/2015 11:42:49 PM (UTC)
    Current Status: Engineers are continuing to troubleshoot potential issues related to Active Directory Federation Services (ADFS). Engineers have gathered additional traces and logging data for deeper analysis. User Experience: Affected users with Windows Phone,
    iOS, or Android devices are unable to access their company portal and receive repeated prompts to enter credentials. If incorrect credentials are entered, users will receive an error stating that they have entered a bad password. Customer Impact: Engineers
    have received reports that some customers are experiencing this issue. A subset of users are affected by this event. Other users remain unaffected. Incident Start Time: Tuesday, December 30, 2014, at 8:00 AM UTC Next Update by: Tuesday, January 13, 2015, at
    12:00 AM UTC
    Torsten Meringer | http://www.mssccmfaq.de

  • Itunes Mobile device manager wont load/gone

    I bought a new ipad3 and i am having an error message come up when syncing my music  from my iTunes account on a HP Netbook (Windows XP) to my iPad3.
    I get an error message that the iTunes Mobile Device Manager is not connected. Using the new 10.6 OS upgrade....recently updated what has happened.
    I repaired iTunes in my Programs, tried to sync...no go. I then deleted iTunes completely and reinstalled.....same result....no Device Manager.
    Maybe I haven't deleted some or all programs first and then try to reinstall? ...maybe I missed something.
    All programs labeled Apple and iTunes were deleted...am I missing something?
    Thanks for any help and guidence.

    Refer to this article to restart AMDS,
    How to restart the Apple Mobile Device Service (AMDS) on Windows
    http://support.apple.com/kb/TS1567

  • ISE integration with Mobile Device Management ( MDM ) help required

    Dear Techies,
         Am here bring to your notice an different issue and no much resources to support even in PEC or Cisco Document.
         We are conduction a Proof Of Concept (PoC) on  Secure Bring Your Own Device ( BYOD ) using Cisco ISE and gonna test all the scenarios like Wired, Wireless and VPN user access.
    Setup Brief :
    =========
          Our Setup has  ISE VM acting as Admin, Monitor and Profiling Device, we have NAC 3315 physical Appliance as Inline posture Device, Wireless LAN controller, Access point and the Identity source as Microsof Active Directory
         Having Plans to Integrate Mobile Device Management ( MDM ) and Citrix VDI setup also.
    Activity Brief:
    =========
         As of now we have tested the Wired Scenario Authentication and authorization for guest users and gonna carry out the profiling and posture.
    Clarifications Required
    ================
    Wired Scenario - Require some configuration / steps on how to carryout posture for the guest wired users i.e. LAPTOP.
    Wireless Scenario
    MDM can be integrated to ISE ? 
    How the MDM can be integrated to Cisco ISE configuration or Guide to show the same?
    What is the demarcation between MDM and ISE ( i.e. What is the role of ISE and MDM on Mobile Devices ) ?
    If MDM is available so then when the control of ISE ends, does MDM do management or ISE will do management of the devices ?
    Is MDM will do client provisioning or ISE should do ?
    Is MDM send or update patches of Mobile Devices ?
    As of now these are the scenarios, kindly revert if any good documents to show this or share your expertise on the Integration Part.
    Thanks for Reading...
    Arun

    I would like to avail your valuable inputs to understand on the  Client provisioning part for the Mobile Devices/ Laptop. I understand  from your reply that MDM integration is not available in the current  release ISE 1.1 - That is correct.
    Kindly let me know your views or any documents on the following scenarios with the current release in mind
    1. User  with Mobile devices connecting to Wireless  ( both Employee  and Guest ) , How the Flow differs for the Employee and Guest.  How the  client provisioning is done ( i.e. Like Posturing  or Compliance Check  ).
    The posturing and compliance check is done based on the user authentication information (i.e. AD memberOf vs Guest user) combined with the users endpoint (windows, mac osx, or a mobile device), ISE then has a few decisions to make based on the authorization policies. For example, if a Domain User coming from a Windows 7 machine joins the network, then can either use the nac agent, or the web agent. Then you can scan for registry settings, file settings, program requirements, hotfix compliance...and the list goes on. If the user fails a check then you can either assign an acl for the user so they only have guest access, or you can place them into a remediation vlan the options are entirely up to the requirements and however the solution is implemented.
    2. User  with Laptop  connecting to Wireless  ( both Employee  and Guest ). How the client provisioning is done ( i.e. Like Posturing   or Compliance Check ).
    Guests are usually redirected to the guest portal which they authenticate and their user group falls within the Guest container that is on the ISE internal database, that is usually coupled with an authorization profile that grants them internet access. For the client provisioning, that is usually done based on the operating system, via profiling (dhcp, and user agent string., netmap...etc) and can be fine tuned for all laptops or to a specific set of users based on their group membership.
    3. What are advantages of having ISE also in  place for Mobile devices, since most of the Mobile related tasks ( like  Authentication, Authorization, Profiling and  Posture ) are carried out  by MDM. I am checking for the significant advantage of having ISE for  Client network having only Mobile devices. Kindly clarify.
    Currently the advantage of Cisco ISE is that it supports profiling within wireless and really fits well within a network that has mostly Cisco products since they are all part of of the Borderless security initiative being driven on the backend. The product teams for wireless, wired, security (vpn..etc) and ISE are pretty close in building their solutions so that you can get connected with any device any where (sorry for the sales pitch). The latests wireless code is improving and is going to have support similar to the ios sensor for wired devices where dhcp, cdp, and other attributes can be sent in the radius packet for better profiling decisions. With integration for an MDM platform coming soon, and also support for TACACS rumored (have to verify with your account rep) you have options that really stand out from a unit that only supports MDM. Cisco ISE also comes with a wireless product ID so that makes the budget work when it comes to deploying ISE if you arent looking for enforcement on your wired devices.
    4. Do you recommend 802.1X Authentication to use for the Employee and Contractor? The Guest user  authentication as Open ?
    For internal users and vendors the best option by far is dot1x, almost all operating systems are capable of performing dot1x and the 1.1.1 MR has a piece now that can provision the supplicant for the users, by using scep to enroll certificates or configure peap settings.
    There is a feature within the guest portal that allows you to statically assign guests into endpoint group, that feature is called device registration web authentication. It seems like an open network but uses mac filtering to assign these devices to an endpoint without requiring users to enter any credentials. They are presented with an AUP page, once they accept their mac address is mapped to the endpoint group
    5. How can we ensure the Encryption of traffic from the Guest user to the NAD ( Network Access devices ) ?
    This may be a wireless question but I am sure the encryption is done using AES and using dot1x as the key management here is a brief background for this - http://www.cisco.com/en/US/tech/tk722/tk809/technologies_configuration_example09186a00807f42e9.shtml#L2
    You can also use the anyconnect client which can provide macsec which is layer 2 encryption for wired - http://www.cisco.com/en/US/prod/collateral/vpndevc/ps6032/ps6094/ps6120/qa_c67-622477_ns1049_Networking_Solutions_Q_and_A.html
    6. We are also looking for VDI  ( Citrix, VMware ) solution for the  client  ( both Employee and Guest ) , how ISE can play a role in  securing the VDI environment.
    For most thin clients you can perform dot1x authentication on the device itself, however that is something the manufacturer will have to support. This is a little gray for me.
    7. Is that any integration required  with Citrix or VMware. How the  VDI can be offered based on the User  role ( i.e. Employee, Contractor or Guest ), since Guest database is  available only with ISE, how the checks are made from the VDI  environment.
    IN ISE there is an identity sequence which can authenticate users in AD first, if the user is not found then it can look in the internal database.
    Our solution demands  MDM in the integrated  solution, As on today ISE cant be integrated with MDM. so what kind of  solution we can propose to have MDM and Cisco ISE .Do the clients now  enter the network should have already installed the MDM agent (or) any  other way of pushing the same to the Client.
    Today there is no integration between the devices, the last release time I heard was December for this feature. However it would be best to confirm with your Cisco Account rep on this issue.
    Thanks,
    Tarik Admani
    *Please rate helpful posts*

Maybe you are looking for

  • How to View/manage Files on Internal Storage?

    Does anyone know how to view/manage files on the Droid Mini? I did find a list of 'Misc. Files' in 'Settings' under 'Storage'. But it only gives the option to delete. My old phone had a 'Files' app (that came on the phone) where I could view/manage a

  • How do I bring up that mini-music store below my playlists

    I clicked on the ringtone maker in iTunes because I wanted to just play around with it, and it removed that little iTunes store that shows up below my playlists. It's the one where if I click on a song in my playlist, it looks it up in the store in r

  • Ipw3945 problem after update

    Hello ppl. Having problem getting my laptop's wireless module to work after the latest update. I'm using iphitus beyond kernel 2.6.17-beyond. Everything worked flawlessly before the update. Now loading the ipw3945 module gives in kernel messages: ipw

  • Lens Distortion effect missing in Premiere Pro CS6

    Hi, I recently purchased a Phantom VIsion 2 and the recorded material needs a bit of a fisheye removal and I read on several forums it's best to use the lens distortion effect found in Effects- Distort in Adobe but it's not in my list, other effects

  • Accesing music store crashes i-tunes

    whenever I try to access music store it begins to connect but i-tunes closes before it reaches store. I upgraded to 6.0 today and it worked with previous version. Any help would be great