Recent joined a new organization and discovered that there are Android, iOS, and ChromeOS devices all over the place, but the accounts used on them are also all over the place. Some people are using personal accounts, some are using a shared account under an old work email, some are using individual accounts that are not managed and may or may not remember the password to get into them!<\/p>\n
There was an MFA project that got started prior to my time, but just getting that rolled out has been a pain because people either don’t know their account or don’t have one. I would love to be able to just let people use their domain logins to get into the App store or Play store! Why an account is required just to download a free app is beyond me.
\nSo, any recommendations on how to centralize mobile device accounts? Is there an easy solution, or should I start planning out a paid MDM solution? We already have Microsoft 365, but I do not think it includes MDM in the license.<\/p>","upvoteCount":6,"answerCount":3,"datePublished":"2023-05-04T13:51:58.000Z","author":{"@type":"Person","name":"krnup","url":"https://community.spiceworks.com/u/krnup"},"acceptedAnswer":{"@type":"Answer","text":"
MDM is part of the answer - this will gain control of the devices and allow central configuraiton.<\/p>\n
But user accounts / identity management is more complex. You need to know what you want to achieve.
\nFor example on phones via MDM you could have the mdm ‘purchase’ the app from the store which will use a central account, the user does not necessarily need a apple or google ID - but can use a personal one, or company created and managed one.<\/p>\n
As a starting point I would recommend an mdm that links device to user using the company email address (and possibly m365/azureAD account). Everyone will have unique login/passcodes etc, recovery via the MDM etc. Then you can use the mdm to deploy Office 365 apps and configure them automatically.<\/p>","upvoteCount":1,"datePublished":"2023-05-04T14:28:23.000Z","url":"https://community.spiceworks.com/t/managed-mobile-device-accounts/951295/2","author":{"@type":"Person","name":"matt7863","url":"https://community.spiceworks.com/u/matt7863"}},"suggestedAnswer":[{"@type":"Answer","text":"
Recent joined a new organization and discovered that there are Android, iOS, and ChromeOS devices all over the place, but the accounts used on them are also all over the place. Some people are using personal accounts, some are using a shared account under an old work email, some are using individual accounts that are not managed and may or may not remember the password to get into them!<\/p>\n
There was an MFA project that got started prior to my time, but just getting that rolled out has been a pain because people either don’t know their account or don’t have one. I would love to be able to just let people use their domain logins to get into the App store or Play store! Why an account is required just to download a free app is beyond me.
\nSo, any recommendations on how to centralize mobile device accounts? Is there an easy solution, or should I start planning out a paid MDM solution? We already have Microsoft 365, but I do not think it includes MDM in the license.<\/p>","upvoteCount":6,"datePublished":"2023-05-04T13:51:58.000Z","url":"https://community.spiceworks.com/t/managed-mobile-device-accounts/951295/1","author":{"@type":"Person","name":"krnup","url":"https://community.spiceworks.com/u/krnup"}},{"@type":"Answer","text":"