Working with mobile protection features
Just as with other operating systems, onboarding Android and iOS is only the start. To suit the needs of your organization, you’ll want to make customizations and changes to MDE’s features. In this section, we look at how to do that across app protection policies, app configuration policies, and our tenant connectors.
Integration with app protection policies
Intune is both a MAM and MDM service. When you learned about automatically onboarding devices to MDE with Intune, you experienced its MDM capabilities – that is, the ability to control things at the device level, which we used to deploy applications and manage settings such as the VPN. However, MAM focuses on application-level control.
Using MAM, we can even extend MDE to devices that aren’t MDM enrolled. This is most commonly appropriate for BYOD scenarios, where we want a heightened level of protection if personal devices access corporate resources,...