After devices enroll and submit compliance data to the partner, that compliance data is forwarded to Intune and added to Azure AD. Refer to the documentation from your device compliance partner for how to enroll devices with that partner. ![]() For information on this task, see the documentation for the applicable partner:Ĭitrix Endpoint Management integration with Microsoft Endpoint ManagerĮnroll your devices to your device compliance partner To enable a device compliance partner to work with Intune, you must complete configurations specific to that partner. Go to Settings > System > Enterprise Integration > Directory Services.Īll the changes you’ve made since the initial configuration or the last manual synchronization are synchronized from Azure Services to UEM.Ĭonfigure your compliance partner to work with Intune Sign in to your VMware Workspace ONE UEM console. Until you manually sync changes, Workspace ONE UEM isn’t aware of configuration changes, and users in new groups you’ve assigned won’t successfully report compliance. This step only applies when you use VMware Workspace ONE:įrom within the Workspace ONE UEM console, you must manually synchronize the changes you saved in the Microsoft Intune admin center. Select Review + save and then Save to save your edits. On the Properties page, select Edit to open the Assignments view where you can change the groups that will use this configuration. On the partner configuration Overview page, select Properties to open the Properties page where you can edit the assignments. Configurations are ordered by platform type. Go to Tenant Administration > Connectors and Tokens > Partner Compliance management, and then select the partner configuration you want to modify. Sign in to Microsoft Intune admin center. Modify the configuration for a compliance partner Your configuration now appears on the Partner compliance management page. On the Review + create page, review your selections, and then select Create to complete this configuration. Users who have devices managed by the partner must also be assigned a license for Intune. With this assignment, you'll change the MDM authority for applicable devices to use this partner. On Assignments, select the user groups that will have devices managed by this partner. You're limited to a single partner per platform, even if you have added multiple compliance partners to Azure AD. Next, select the drop-down for Platform, and select the platform. To use VMware Workspace ONE as the compliance partner for iOS or Android platforms, select VMware Workspace ONE mobile compliance.On the Basics page, expand the Compliance partner drop-down and select the partner you're adding. VMware Workspace ONE UEM (formerly AirWatch).The following compliance partners are supported as generally available: When you add additional partners, you can set the priority order to ensure the correct partner manages device to fit your business needs. By default, Intune is a registered compliance partner for iOS and Android. The compliance state is then evaluated by conditional access policies, the same as compliance state data for devices managed by Intune. ![]() For example, devices with a state of non-compliant have that status added to their device record in Azure AD. Intune then adds this information to Azure AD. With these tasks complete, the device compliance partner sends device state details to Intune. To enable use data from device compliance partners, complete the following tasks:Ĭonfigure Intune to work with the device compliance partner, and then configure groups of users whose devices are managed by that compliance partner.Ĭonfigure your compliance partner to send data to Intune.Įnroll your devices to your device compliance partner. When you add a compliance partner to Azure AD and Intune, you're configuring that partner to be a source of Mobile Device Management (MDM) authority for the devices you assign to that partner through an Azure AD user group. ![]() Supported platforms include Android, iOS/iPadOS, and macOS, with support for a platform defined by the device compliance partner you use.īy default, Intune is set up to be the Mobile Device Management (MDM) authority for your devices. With this configuration, compliance data from those devices can be used with your conditional access policies. Microsoft Intune can add compliance state data to Azure Active Directory (Azure AD) for the devices you manage with one or more third-party device compliance partners.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |