u/db2boy

▲ 3 r/mosyle

Auth 2, Platform SSO, or both?

I'm new to MDM and Mosyle, been trialing it, and plan to deploy. I'm trying to decide the best approach before rolling out to macbooks, I've experimented with different configurations but looking for guidance in case I've missed or overlooked some nuances.

I'm under pressure to start rolling it out, but nervous of going one route only to find gotchas or another approach would have been better. I'd be most grateful for any feedback or guidance on my current thoughts/questions:

  1. Auth 2 can setup and sync the user/password with Microsoft Entra and on a reboot require the sign on + MFA; adds a layer of authentication.

  2. PSSO with password can also sync the user/password with Microsoft Entra but doesn't provide MFA on a reboot or other unlock/login MFA.

  3. PSSO is simpler and should improve as Microsoft/Mosyle add more support for it

  4. Microsoft Company Portal is needed for both for apps etc to use SSO.

  5. Is it advantageous to use Auth 2 for the login and sync experience, etc, with PSSO using enclave key to support apps and SSO?

  6. How are you deploying Mosyle for macs: Auth 2, PSSO (password or enclave key?), or both?

Many thanks!

reddit.com
u/db2boy — 5 days ago