MDM Entra and MDM Authority and MDM in Intune?!!
Alright folks, I’ve been beating my head against a wall for two weeks and I can’t do it any longer.
I’ll preface this with, “I’m new to this.” That said, I’m great at figuring stuff out but the documentation on this process is lacking in so many ways.
I’ve come on with a company that was, as far as I can tell, not managing their devices (in this case, Windows devices). I set about learning everything I could about Entra/Azure (whatever we’re calling it these days) and Intune, registering devices, enrolling devices, etc.
We currently pay for 25 Intune licenses. I have one. My Test User account has one. My DEM user has one (which I’ve set up as a DEM in Intune). And one of our actual employees has one. Both devices were set up as an OOBE (one brand new and one wiped and reset). For one of them I used ‘Work/School’ login on startup and signed in with my DEM account. For the other I used ‘Work/School’ and signed in with my Test User account.
First thing I knew was to make sure our MDM Authority was set to Intune. I checked and it’s currently reading as “Microsoft Office 365” (see image) I’ve read about an ‘orange bar.’ I don’t have an orange bar. I read about, “Depending on whether your tenant was pre or post 1911 Service Release, Intune is automatically set as your MDM.” and “If Mobile Device Management Authority was set, you cannot change this.”
So, my first question.. because I’m confused. How is someone supposed to know what their current MDM is set to if nothing reads as all of the documentation reads. How do I know if MDMA was set as the MDM and, if so, is Microsoft Office 365 the same thing as MDMA (for some silly reason)? And if my MDM was set and now I can’t change it, do I just assume that even though it says ONE thing, I’m supposed to just ignore it and believe my MDM is actually Intune?
That’s the first issue.
Second. In Entra/Azure the two devices I’ve been using to try and understand this convoluted process say they are being managed (MDM) by”Office 365 Mobile.” What the actual… is Office 365 Mobile really Microsoft Office 365 which is really Intune???? I’m lost. (see image)
To make matters worse/more confusing. IN Intune when I look at the devices, it says there the devices MDM is INTUNE!?!! (see image)
I don’t really know what I’m missing. I keep reading something about adding Intune as an MDM Authority and being able to choose which Authority I am using to manage devices but, as with everything Microsoft, who knows what’s changed since all of this documentation, blog posts, etc. were written. I can’t, for the life of me, find anywhere to ‘add’ Intune.
Can someone PLEASE help me understand this. I’ve been at this for weeks, I have a timeline as we’re rolling out a bunch of new devices and I don’t want to miss this opportunity to do it the right way.
I feel like I’m getting close but, on top of being unsure of whether they are even actually being managed by Intune, none of the basic policies I’ve created are being pushed to the devices regardless of how many times I’ve checked to make sure the users are in the right group, etc. etc. etc.
I’ve tried adding corporate identifiers. I feel like I’ve tried everything.
I’m pulling my hair out.
Alright folks, I’ve been beating my head against a wall for two weeks and I can’t do it any longer.I’ll preface this with, “I’m new to this.” That said, I’m great at figuring stuff out but the documentation on this process is lacking in so many ways.I’ve come on with a company that was, as far as I can tell, not managing their devices (in this case, Windows devices). I set about learning everything I could about Entra/Azure (whatever we’re calling it these days) and Intune, registering devices, enrolling devices, etc. We currently pay for 25 Intune licenses. I have one. My Test User account has one. My DEM user has one (which I’ve set up as a DEM in Intune). And one of our actual employees has one. Both devices were set up as an OOBE (one brand new and one wiped and reset). For one of them I used ‘Work/School’ login on startup and signed in with my DEM account. For the other I used ‘Work/School’ and signed in with my Test User account. First thing I knew was to make sure our MDM Authority was set to Intune. I checked and it’s currently reading as “Microsoft Office 365” (see image) I’ve read about an ‘orange bar.’ I don’t have an orange bar. I read about, “Depending on whether your tenant was pre or post 1911 Service Release, Intune is automatically set as your MDM.” and “If Mobile Device Management Authority was set, you cannot change this.”So, my first question.. because I’m confused. How is someone supposed to know what their current MDM is set to if nothing reads as all of the documentation reads. How do I know if MDMA was set as the MDM and, if so, is Microsoft Office 365 the same thing as MDMA (for some silly reason)? And if my MDM was set and now I can’t change it, do I just assume that even though it says ONE thing, I’m supposed to just ignore it and believe my MDM is actually Intune?That’s the first issue.Second. In Entra/Azure the two devices I’ve been using to try and understand this convoluted process say they are being managed (MDM) by”Office 365 Mobile.” What the actual… is Office 365 Mobile really Microsoft Office 365 which is really Intune???? I’m lost. (see image)To make matters worse/more confusing. IN Intune when I look at the devices, it says there the devices MDM is INTUNE!?!! (see image)I don’t really know what I’m missing. I keep reading something about adding Intune as an MDM Authority and being able to choose which Authority I am using to manage devices but, as with everything Microsoft, who knows what’s changed since all of this documentation, blog posts, etc. were written. I can’t, for the life of me, find anywhere to ‘add’ Intune. Can someone PLEASE help me understand this. I’ve been at this for weeks, I have a timeline as we’re rolling out a bunch of new devices and I don’t want to miss this opportunity to do it the right way.I feel like I’m getting close but, on top of being unsure of whether they are even actually being managed by Intune, none of the basic policies I’ve created are being pushed to the devices regardless of how many times I’ve checked to make sure the users are in the right group, etc. etc. etc.I’ve tried adding corporate identifiers. I feel like I’ve tried everything.I’m pulling my hair out. Read More