Hello,
I've asked few questions for this same scenario related to iOS enrollment in endpoint protection manager as company owned.
Earlier status: iOS devices was not managed and users were accessing emails, teams and one drive
Enrollment process I followed:
1-The scenario I followed is to add iOS serial number to enrollments
2-Created the required Apps /Policies to be pushed
3-Install Intune Company Portal manually and enroll the devices
Everything went smoothly and it was really promising till this week, when I discovered that approximately 30 employees just uninstall Intune Company Portal! Now is as before, they still able to open mails, teams and one drive
and I don't have any control.
I will re-enroll them again, but how can I block their abilities from uninstall Intune Company Portal?