Does App Selective Wipe work on non enrolled iOS and Android devices

Tiana_salal 1 Reputation point
2021-01-15T21:55:23.663+00:00

I'm looking for a way to remove corporate data on non enrolled devices that are using Intune managed apps

Found documentation but doesn't mention if only for enrolled devices or Windows (https://learn.microsoft.com/en-us/mem/intune/apps/apps-selective-wipe)

I do see in the notes that user has to open the application for the wipe to work but what does Intune consider corporate data ( attachments opened from Outlook, documents opened from trusted source like OneDrive or SharePoint)

Microsoft Intune Application management
Microsoft Intune Application management
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Application management: The process of creating, configuring, managing, and monitoring applications.
876 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,365 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Jason Sandys 31,161 Reputation points Microsoft Employee
    2021-01-15T22:19:04.327+00:00

    Yes, this is applicable to MAM-only devices (as well as MDM-enrolled devices with MAM/APP policies) as this is an app specific operation.

    It's not really about what Intune considers corporate data, it's what the app itself considers corporate data and it's up to each managed app to define this. Some apps have multi-persona support (like the Office apps in iOS and DA mode on Android) and so delete all data associated with the corporate persona. For apps on Android Enterprise, there is a corporate instance of the app that gets its data wiped.


  2. Lu Dai-MSFT 28,356 Reputation points
    2021-01-18T06:05:32.463+00:00

    @Tiana_salal My understanding is that we choose apps to be protected in App Protection Policy. When we login these apps with Azure AD account, it is corporate data. When we login these apps with personal account, it is personal data.

    Thanks for understanding.


    If the response is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments