Hi,
We have enrolled win 10 device in Intune. I want to know, if its possible to apply App protection policies to win 10 enrolled machine with (with out enrollment option)

Hi,
We have enrolled win 10 device in Intune. I want to know, if its possible to apply App protection policies to win 10 enrolled machine with (with out enrollment option)

@talhaahmed-4938 Thanks for posting in our Q&A.
For this issue, I have done the test in my lab. I deployed an app protection policy without enrollment to my user group. Then I use the user account included in the user group to log in the enrolled windows 10 device. The app protection policy doesn't work.
Given this situation, we couldn't apply App protection policies to win 10 enrolled machine with (without enrollment option).
Hope the above information will help.
If the response is helpful, please click "Accept Answer" and upvote it.
Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.
Keep in mind though that on Win 10, there is no actual MAM. Intune uses Windows Information Protection (WIP) on Windows devices which does not have the hard boundaries that are equivalent to APP on iOS and Android.
If you want true DLP on Windows, the preferred choice is to use M365 DLP: https://docs.microsoft.com/en-us/microsoft-365/compliance/dlp-learn-about-dlp?view=o365-worldwide.
5 people are following this question.