Connect your Intune account to your Managed Google Play account
To support Android Enterprise work profile, Android Enterprise fully managed, and Android Enterprise dedicated devices, you must connect your Intune tenant account to your Managed Google Play account.
To make it easier for you to configure and use Android Enterprise management, upon connecting to Google Play, Intune will automatically add four common Android Enterprise related apps to the Intune admin console. The four Android Enterprise apps are the following:
- Microsoft Intune - Used for Android Enterprise fully managed scenarios.
- Microsoft Authenticator - Helps you sign-in to your accounts if you use two-factor verification.
- Intune Company Portal - Used for App Protection Policies (APP) and Android Enterprise work profile scenarios.
- Managed Home Screen - Used for Android Enterprise dedicated/kiosk scenarios.
Due to interaction between Google and Microsoft domains, this step may require that you adjust your browser settings. Make sure that "portal.azure.com" and "play.google.com" are in the same security zone in your browser.
If you haven’t already, prepare for mobile device management by setting the mobile device management authority as Microsoft Intune.
Sign in to the Microsoft Endpoint Manager Admin Center, choose Device enrollment > Android enrollment > Managed Google Play. If you are using a custom Intune admin role, access to this requires Organization Read and Update permissions.
Choose I agree to grant Microsoft permission to send user and device information to Google.
Choose Launch Google to connect now to open the Managed Google Play website. The website opens on a new tab in your browser.
On Google's sign in page, enter the Google account that will be associated with all Android Enterprise management tasks for this tenant. This is the Google account that your company's IT admins share to manage and publish apps in the Google Play console. You can use an existing Google account or create a new one. The account you choose must not be associated with a G-Suite domain.
If you are using the Microsoft Edge browser, click Sign-In in the upper right corner to sign-in to your Google account.
Provide your company's name for Organization name. For Enterprise mobility management (EMM) provider, Microsoft Intune should be displayed.
Agree to the Android agreement, and then choose Confirm. Your request will be processed.
Disconnect your Android Enterprise administrative account
You can turn off Android Enterprise enrollment and management. To do this, you must first retire any enrolled Android Enterprise devices, including work profile devices, dedicated devices and fully managed devices. Then, choose Disconnect in the Intune administration console to remove all enrolled Android Enterprise work profile devices, dedicated devices and fully managed devices from enrollment. This also removes the relationship between the Managed Google Play account and Intune.
- As an Intune administrator, sign in to the Microsoft Endpoint Manager Admin Center.
- Choose Device enrollment > Android enrollment > Managed Google Play > Disconnect.
- Choose Yes to disconnect and unenroll all Android enterprise devices from Intune.
After connecting to the Managed Google Play account, you can set up Android Enterprise work profile devices, set up Android Enterprise dedicated devices and set up Android Enterprise fully managed devices