Create a Microsoft Intune app protection profile in BlackBerry UEM
Microsoft Intune
app protection profile in BlackBerry UEM
When you create or update a
Microsoft Intune
app protection profile in BlackBerry UEM
, the profile settings are sent to Intune
to update the corresponding app protection policy. Microsoft Intune
app protection profiles can be assigned only to directory-linked groups.
The
Microsoft Intune
app protection profile settings are sent to Intune
and update the settings in the corresponding app protection policy. Modifying or deleting the Intune
policy in Azure
can prevent other users from activating BlackBerry Enterprise BRIDGE
.For more information about
Microsoft Intune
app protection profile settings, see Microsoft Intune
app protection profile settings in the BlackBerry UEM
administration content. If you configure the Microsoft Intune
app protection profile to Prevent Save as and allow users to save files to a Local storage, users receive the error message "Action Not Allowed. Your organization only allows you to open work or school data in this app" when they try to send a file from the device not secure local storage. Files must be opened from a corporate location (for example, a secured local storage, Microsoft OneDrive for Business
or Microsoft
SharePoint
).- ConfigureBlackBerry UEMto synchronize withMicrosoft Intune. TheMicrosoft Intuneapp protection profile does not appear on the Policies and Profiles page if the connection isn't configured.
- ForAndroiddevices, make sure theMicrosoftCompany Portal app is installed on devices but not activated. For more information, see app-protection-enabled-apps-android.
- On the menu bar, clickPolicies and Profiles.
- ClickProtection > Microsoft Intune app protection profile.
- Click
.
- Type a name and description for the profile.
- Select theEnable interoperability between Intune and Dynamics appscheckbox.When you enable this feature, the following policy settings are set to Policy Managed apps only and cannot be changed for security reasons such as enforcing data to remain within the intune protected secure environment:
- Allow app to transfer data to other apps
- Allow app to receive data from other apps
- Optionally, in the custom JSON field, edit the JSON values if you want to customize messages and warning seen by your users in theEnterprise BRIDGEapp.
- Select thePrevent Save ascheckbox and select one or more of the following options to allow users to save files to the following locations:
- Local storage: Allows users to save a copy of the file in theIntune-managed app.
- OneDrive for Business
- SharePoint
- Beside the App package IDs, click
.
- Select the following apps:
- com.microsoft.office.excel
- com.microsoft.office.powerpoint
- com.microsoft.office.word
- ClickSave.
- ClickAdd.