快速入门指南:阻止公司数据从 Office 365 移动应用中泄露Quick Start Guide: Prevent company data leaks from Office 365 mobile apps

适用于:经典控制台中的 IntuneApplies to: Intune in the classic console
正在查找有关 Azure 中的 Intune 的文档?Looking for documentation about Intune on Azure? 请转到此处Go here.

Microsoft Intune 可以使用移动应用管理 (MAM) 策略帮助你保护组织的数据,此策略可防止从 Office 365 移动应用或其他业务线 (LOB) 应用泄露公司数据。Microsoft Intune can help you secure your organization’s data using mobile application management (MAM) policies that help prevent company data leaks from Office 365 mobile apps or other line of business (LOB) apps. 可以使用 Intune MAM 策略,而无需最终用户在 Intune 移动设备管理 (MDM) 中注册其设备。Intune MAM policies can be used without requiring end users to enroll their devices in Intune mobile device management (MDM). 因此,如果某些用户不希望将其 BYOD iOS 或 Android 移动设备注册到 Microsoft MDM 解决方案(Intune、Configuration Manager 或 EAS),你想要无需管理最终用户设备即可保护公司数据,或者你已在使用非 Microsoft MDM 解决方案,则 Intune 可以帮助你提高公司数据的安全性。So, if you have users who do not want to enroll their BYOD iOS or Android mobile devices into a Microsoft MDM solution (Intune, Configuration Manager, or EAS), you want to protect corporate data without managing end users devices, or you are already using a non-Microsoft MDM solution, Intune can help you increase your company’s data security.

此快速入门指南适合我吗?Is this quick start guide right for me?

要允许最终用户无需在移动设备管理 (MDM) 解决方案中注册设备即可访问其 iOS 和 Android 设备上的 Office 365 和 LOB 应用数据,但仍控制他们可以或不可以将数据复制和粘贴到个人应用吗?Would you like to allow your end users to access your Office 365 and LOB app data on their iOS and Android devices without requiring device enrollment in a Mobile Device Management (MDM) solution, but still control what they can or cannot do with that data such as copying and pasting it onto personal apps?

如果是,Microsoft Intune 允许你在 iOS 和 Android 上设置 Office 365 移动应用的 MAM 策略,包括剪切/复制/粘贴限制、防止“另存为”、设置 PIN 要求以及能够以远程方式擦除 MAM 保护的数据。If yes, Microsoft Intune allows you to set MAM policies for Office 365 mobile apps on iOS and Android, including cut/copy/paste restrictions, preventing ‘save-as’, setting PIN requirements, and the ability to remotely wipe MAM protected data. 这样无需用户将其设备注册到 MDM 解决方案即可保护公司数据,同时保持 Office 移动应用有很好的最终用户体验。This protects company data without requiring users to enroll their devices into an MDM solution while maintaining a great end-user experience with Office mobile apps.

如何操作?How do I do it?

  1. 基本了解 Intune 移动应用管理 (MAM) 的工作原理Get a basic understanding of how Intune mobile application management (MAM) works.
  2. 了解在 Azure 门户中创建 MAM 策略之前需要执行的操作Find out what you need to do before you can create MAM policies in the Azure portal.
  3. 使用 Intune 创建和部署 MAM 策略Create and deploy MAM policies with Intune.

其他信息:Additional information:

接下来我该怎么办?What should I do next?

从非 Microsoft MDM 解决方案迁移到 Microsoft IntuneMigrate from a non-Microsoft MDM solution to Microsoft Intune

在 Intune MDM 中注册设备Enroll devices into Intune MDM

要提交产品反馈,请访问 Intune Feedback