- Intune Company Portal Download Mac Os High Sierra
- Download Mac
- Intune Company Portal Download Mac Os 10.13
- Intune On Mac
When you install the Company Portal app and enroll your macOS device in Intune, you can use the Company Portal app to: Access the company's network, and your email and work files. Get company apps from the Company Portal. Remotely reset your phone to factory settings if it is lost or stolen. Automatically set up your company email account. Download this app from Microsoft Store for Windows 10, Windows 8.1, Windows 10 Team (Surface Hub), HoloLens. See screenshots, read the latest customer reviews, and compare ratings for Company Portal.
Original Post from Microsoft Enterprise Mobility + Security
Author: Courtenay Bernier
Author: Courtenay Bernier
Back in 2015 I wrote ablogabout Mac management with Intune, however it’s been a few years and I feel it’s time we re-visit Mac management with Intune to learn more about what’s changed. You’ll soon learn there’s been a significant amount of progress and since my first post Intune now has a lot of native Mac management capabilities built in.
First let’s look at MacOS enrollment options with Intune.
MacOS enrollment options
There are two methods to enroll MacOS with Intune, user drivenorusing Device Enrollment Program.
User driven enrollment
For user driven enrollment the end user will need to sign into the web based version of the company portal viahttps://portal.manage.microsoft.com
If the user already had a device registered it will show on the screen, if the Mac is the first device being enrolled, they will see the following:
Once the user selects “Add this one by tapping here” they’ll be prompted to download the Intune Company Portal app.
After the Company Portal is downloaded and installed, open it up and you’ll be asked to sign-in using your corporate credentials. These are the same credentials used to sign into Office 365 (derived from Azure AD).
After sign-in is complete the device will begin the enrollment process.
For more details on user driven Mac enrollment please visit:https://docs.microsoft.com/en-us/intune-user-help/enroll-your-device-in-intune-macos-cp
Apple Device Enrollment Program
The concept of the Apple DEP is to associate devices with an organization and to streamline the enrollment process, similar to enrolling Apple iOS devices. However, enrollment requires a different process by associating an Apple enrollment token with Intune. After the enrollment token is added and enrollment profile is created in Intune and associated with the enrollment token.
During the enrollment profile creation process you’ll be asked to select user affinity (i.e. userless or user associated). Once user affinity is selected, you’ll also select whether or no you’ll all users to remove the enrollment profile via the “Locked enrollment” setting. Finally, you’ll customize the setup assistance which allows for hiding setup screen, e.g. Apple Pay, Siri, Registration, etc.
For more details on the Apple enrollment token process with Intune please visit:https://docs.microsoft.com/en-us/intune/device-enrollment-program-enroll-macos
Conditional access
An exciting feature of Azure AD is the ability to target certain device platforms (e.g. MacOS) and set a series of conditions for access by creating conditional access policies in Azure AD.
Compliance
Azure AD and Intune compliance policies also play a role in access. Step through the compliance policies below to view the restrictions that may be enabled for the device to be compliant.
Device Health
System integrity protection prevents malicious apps from modifying protected files and folders.
Device Properties
Specify which OS version and builds you’ll allow before accessing corporate resources.
System Security
Configured password and password integrity, storage encryption, firewall, and gatekeeper to project against malware.
Actions to take for non-compliance
Take action when devices are not compliant with the compliance policy by sending the user a mail and/or locking the device.
Associating an Intune compliance policy with Azure AD conditional access policy
Create an Azure AD conditional access policy to require the device be compliant to access corporate resources.
Looking at device configuration for MacOS there are a number of settings, and in my opinion, those settings address a lot of organizations requirements for Apple Mac management.
Device features
Device restrictions
Samson g track driver download mac.
Endpoint protection
Looking to protect the device further by configuring the firewall and controlling where apps are installed from? Gatekeep will help with those requirements.
Further configure firewall settings to device what you’ll allow in and which apps are allowed and/or blocked.
Certificates
Intune supports PKCS certificates for general and S/MIME purposes.
Device and user-based certificates are both supported via SCEP
VPN
Many VPN settings are available including 3rdparty VPN support.
Make note of On-demand and per-app VPN
Intune Company Portal Download Mac Os High Sierra
Use a proxy server? No problem!
Wi-Fi
Both Basic and Enterprise Wi-Fi profiles are supported with various auth types.
Customize with Apple Configurator
Don’t see a setting in the UI, not to worry as you can create a custom profile using Apple Profile Manager and/or Apple Configurator and upload the payload for delivery through Intune.
App deployment
Both line of business and Office apps are supported right from the UI.
When selecting “Line-of-business app” the MacOS app must be wrapped using the app wrapping tool for Mac which will wrap the app and give it an extension of .intuneMac.
The tool is available on GitHub:https://github.com/msintuneappsdk/intune-app-wrapping-tool-mac
To learn more about Mac app deployment with Intune please visit:https://docs.microsoft.com/en-us/intune/lob-apps-macos
One of my peers Scott Duffy@Scottdufhas a great post on this topic:https://blogs.technet.microsoft.com/microscott/deploying-apps-to-macs-using-microsoft-intune/
Note: as of this post only .pkg files are supported nor are conversions from .dmg to .pkg
Microsoft + Jamf partnership
Microsoft has also has a partnership withJamf. Jamf also provides MacOS management and if your organization currently utilizes Jamf and would like to receive the benefits of integrating Jamf with Intune you can do this today with Jamf Pro. So, what does this mean?
MacOS devices managed by Jamf remain managed by Jamf when Intune comes into the picture (thus are only registered with Intune not enrolled) and integrating Jamf Pro with Intune provides a path for Jamf to send signals in the form of inventory to Intune. Intune will use compliance policies to evaluate the Jamf signals and in turn send signals over to Azure AD stating whether the device is compliant or not. The Azure AD conditional access policy will kick in and based on your configuration of the conditional access policy, will either block or further challenge the user to remediate before access company resources.
For more details about Intune and Jamf integration please visit:https://docs.microsoft.com/en-us/intune/conditional-access-integrate-jamf
Jamf also has a whitepaper about Intune integration:https://www.jamf.com/resources/technical-papers/integrating-with-microsoft-intune-to-enforce-compliance-on-macs/
That’s it for now, however Microsoft is always releasing updates for Intune. Check back monthly withWhat’s new in Microsoft Intuneand be sure to check which Intune features are under development by visiting:https://docs.microsoft.com/en-us/intune/in-development
Article re-posted from https://uem4all.com/2019/03/11/intune-macos-management/
Go to Source
Author: Courtenay Bernier
Audacity 1.2.6 download mac. Enroll your macOS device with the Intune Company Portal app to gain secure access to your work or school email, files, and apps.
Organizations typically require you to enroll your device before you can access proprietary data. After your device is enrolled, it becomes managed. Your organization can assign policies and apps to the device through a mobile device management (MDM) provider, such as Intune. To get continuous access to work or school information on your device, you must set up your device to match your organization's policy settings.
This article describes how to use the Company Portal app for macOS to set up and maintain your device so that you meet your organization's requirements.
What to expect from the Company Portal app
During initial setup, the Company Portal app requires you to sign in and authenticate yourself with your organization. Company Portal then informs you of any device settings you need to configure to meet your organization's requirements. For example, organizations often set minimum or maximum character password requirements that you'll be required to meet.
After you enroll your device, Company Portal will always make sure that your device is protected according to your organization's requirements. For example, if you install an app from a source that's not trusted, Company Portal will alert you and might restrict access to your organization's resources. App protection policies like this one are common. To regain access, you'll likely need to uninstall the app.
If after enrollment your organization enforces a new security requirement, such as multi-factor authentication, Company Portal will notify you. You'll have the chance to adjust your settings so that you can continue to work from your device.
To learn more about enrollment, see What happens when I install the Company Portal app and enroll my device?.
Get your macOS device managed
Use the following steps to enroll your macOS device with your organization. Your device must be running macOS 10.12 or later.
Note
Throughout this process, you might be prompted to allow Company Portal to use confidential information that's stored in your keychain. These prompts are part of Apple security. When you get the prompt, type in your login keychain password and select Always Allow. If you press Enter or Return on your keyboard, the prompt will instead select Allow, which may result in additional prompts.
Install Company Portal app
- Go to Enroll My Mac.
- The Company Portal installer .pkg file will download. Open the installer and continue through the steps.
- Agree to the software license agreement.
- Enter your device password or registered fingerprint to install the software.
- Open Company Portal.
Important
Microsoft AutoUpdate might open to update your Microsoft software. After all updates are installed, open the Company Portal app. For the best setup experience, install the latest versions of Microsoft AutoUpdate and Company Portal.
Enroll your Mac
- Sign in to Company Portal with your work or school account.
- When the app opens, select Begin.
- Review what your organization can and can't see on your enrolled device. Then select Continue.
- On the Install management profile screen, select Download profile.
- Your device's system preferences will open.
a. Select Install and then select Install again.
b. If you’re prompted to, enter your device password. - Once the profile is installed, it will appear in the profiles list under Management Profile.
- Return to Company Portal.
- Your organization might require you to update your device settings. When you're done updating settings, select Retry.
- When setup is complete, select Done.
Troubleshooting and feedback
If you run into issues during enrollment, go to Help > Send Diagnostic Report to report the issue to Microsoft app developers. This information is used to help improve the app. They'll also use this information to help resolve the problem if your IT support person reaches out to them for help.
After you report the problem to Microsoft, you can send the details of your experience to your IT support person. Select Email Details. Type in what you experienced in the body of the email. To find your support person's email address, go to the Company Portal app > Contact. Or check the Company Portal website.
Download Mac
Additionally, the Microsoft Intune Company Portal team would love to hear your feedback. Go to Help > Send Feedback to share your thoughts and ideas.
Unverified profiles
When you view the installed mobile device management (MDM) profiles in System Preferences > Profiles, some profiles might show an unverified status. As long as the management profile shows a verified status, you don't need to be concerned.
The management profile is what defines the MDM channel connection. As long as the management profile is verified, any other profiles delivered to the machine via that channel inherit the security traits of the management profile.
Updating the Company Portal app
Updating the Company Portal app is done the same way as any other Office app, through Microsoft AutoUpdate for macOS. Find out more about updating Microsoft apps for macOS.
Intune Company Portal Download Mac Os 10.13
![Download Download](/uploads/1/3/3/9/133909921/318955987.png)
Next Steps
Intune On Mac
Still need help? Contact your company support. For contact information, check the Company Portal website.