











Then a separate gray bubble under it "one or more compliance policies for iOS/Android have a configured device threat level setting without an active mobile threat defense connector. Click here to setup a mobile threat defense connector for iOS." Not sure if that one is related.
As far as I know nothing has changed. Any ideas?
https://learn.microsoft.com/en-us/intune/app-management/protection/multiple-managed-accounts
Looks like a relatively new article. From what I've been able to find, it should be enabled by default now but our users are still getting the message "you can only have one managed account" when trying to add a second app protected email account from another oganization to Outlook on iOS. Thanks.
I retired the iphones from our previous MDM, then did the QR code method to add the profile to the phone for most of our fleet so they didnt need to be recalled and wiped. So at first most of them were not showing as supervised. However, over time it seems like more and more of them are even though the phones weren't wiped and set up from scratch (ADE). Is this because the phones were always in ABM, and the supervised state they were under with our previous MDM never really left the phone? That's what I'm reading it could be.
So for web-enrolled (BYOD) as far as I understand it, if I go in the hardware info and the Supervised state is "no" then I can't apply an app restriction configuration to it and simply have the phone disappear the app. The best you can do is set a compliance policy to immediately make the phone go non-compliant if the restricted app is on there.
For fully supervised ADE enrolled phones, you can go to device configuration and create an app restriction policy which has made the app vanish on the testing I've done. However, the app still seems to be on the phone in some capacity and the App Store thinks it's installed, and it's still marked as non-compliant. I have read that the app restriction basically just hides it. To actually remove it from the phone you add the app you don't want to your App library in Intune, and then assign your users under the "uninstall" section. Also on that subject, I added the app to my Intune app library as a VPP app, and another duplicate entry as an iOS store app - any issue there?
Do I have all this correct? I also read for the non fully supervised phones that you can have it removed by intentionally setting the app as "required" and then it will pop up on users phones and ask them if they want to let Intune manage the app. Then you can set it to uninstall. Is that true and works?
This is all for iPhones by the way. Thanks folks.
edit: just to clarify for everyone, they are corporate phones but they were web-enrolled after being released from the previous MDM so that everyone wouldnt have to wipe their phone. So they're managed with the profile downloaded and installed, but not ADE fully supervised.
I'll start. Jerry robbing a woman of her marble rye.
We have a bunch of mandatory 365 apps including company portal. The rest of them install fine but the company portal stays on "waiting to install" status for hours. Whenever it does try again, a popups says an app is trying to install and needs you to sign into iTunes. VPP is working, token and sync is fine, all the other apps are fine. It's a device based license no change there. Something is just acting up. Multiple different iphones multiple different accounts, they're all doing it at themoment for our new deployments. Thanks.
Just says waiting for install status and "failed to fetch application install details." All the other 365 mandatory apps are being pushed. I tried adding more licenses to the VPP and re-syncing the token which sometimes fixes it. Nope. Multiple devices even after erasure. Ideas?
Goes back to a question I was asking yesterday about a user who for some reason isn't getting CA's blocking him from accessing 365 apps when he's out of compliance. I have read somewhere before that Intune can only enforce policies on apps if it was either pushed as a mandatory app, or downloaded from the Company Portal. Is that true? Does being fully supervised or non-ADE web enrolled make a difference? Thanks.
On most users the default compliance policy will be anywhere from a week to a month last contacted, and our regular policy that enforces things like restricted apps, can be months out of date for people.
We're having a weird occurrence with a user in our intune. For myself or anyone else i've seen, on our corporate iphones if you download the tiktok app you get flagged for violation of compliance and then a 2 day grace period initiates, then you cant login to 365 apps after that point. I have tested this with multiple users and it works. but theres one person who if they download tiktok, i see on intune that their phone is out of compliance, but even after the 2 days when it says they are no longer compliant, they can still access 365 apps. I don't know if this user was web-enrolled or fully ADE managed (not sure how to check) but from what I understand it shouldn't make a difference.
It stood out to me, I'm curious if anyone noticed what I noticed leading up to that point about the show.
>!Spoiler: I noticed a clear pattern of Apple product placement leading up to that point. !<
They clearly made a change to the timer recently. I'm seeing people just drive right through the red now fed up. It's probably GOING to have some traffic once the condo complex it goes into is built, but it is not built yet. I get stopped at this thing every time I go through, I think the timer is on like a 50/50 split with main street traffic, and like 1 person goes through. Infuriating. The one just a few yards beyond it that goes into no frills is also damn annoying. They've created this nice little trap.
You're in battle square trying to get w-summon.
You have 40,000BP.
You are on one of the last enemies of a round that has high hp.
You get accessory broken.
You get berserked.
You get mini'd.
The enemy you are fighting runs out of skill power and has no physical attacks.
You are now fucked.
I currently have turned on a speed hack to crank up the game to 4x speed, with cloud luckily having 4x cut on, hitting Serpent for 4 slashes of 1hp every 3 seconds. I'll see you guys in 3 hours.
edit: 3 hour update....still goin
edit 2: aaand i just looked up that he has 12,000 more HP in battle square than he does in the gelnika....i'm resetting.
Credit to u/NYstate
https://www.reddit.com/r/funny/comments/1t6cupm/tony_soprano_plays_elden_ring/