使用恢復出廠預設值或移除公司資料來移除裝置Remove devices by using factory reset or remove company data

適用對象:Azure 入口網站的 IntuneApplies to: Intune in the Azure portal
您需要傳統入口網站的 Intune 相關文件嗎?Looking for documentation about Intune in the classic portal? 請移至這裡Go here.

您可以從 Intune 移除不再需要、重新設定用途或已遺失的裝置。You can remove devices from Intune that are no longer needed, are being repurposed, or have gone missing. 您可以藉由發出 [移除公司資料] 或 [恢復出廠預設值] 命令來執行這項作業。You can do this by issuing a remove company data or factory reset command. 使用者也可以從 Intune 公司入口網站,對 Intune 中註冊的個人擁有裝置發出遠端命令。Users can also issue a remote command from the Intune Company Portal to personally owned devices enrolled in Intune.

注意

在您從 Azure Active Directory 移除使用者之前,請對與該使用者建立關聯的所有裝置發出 [恢復出廠預設值] 或 [移除公司資料] 命令。Before you remove a user from Azure Active Directory, issue a Factory reset or Remove company data command to all devices associated with that user. 如果您從 Azure Active Directory 移除使用者和受管理的裝置,Intune 不會再對這些裝置發出恢復出廠預設值或移除公司資料。If you remove users with managed devices from Azure Active Directory, Intune can no longer issue factory reset or remove company data to those devices.

原廠重設Factory reset

[恢復出廠預設值] 會將裝置還原為其出廠預設值,移除所有的公司和使用者資料與設定,Factory reset restores a device to its factory default settings, removing all company and user data and settings. 並從 Intune 管理項目移除裝置。The device is removed from Intune management. 恢復出廠預設值可用於在提供裝置給新使用者之前重設裝置,或用於裝置遺失或遭竊的情況。Factory reset is useful for resetting a device before giving it to a new user, or for instances where the device has been lost or stolen. 請小心選取恢復出廠預設值。Be careful about selecting factory reset. 裝置上的資料無法復原。Data on the device cannot be recovered.

將裝置恢復出廠預設值To factory reset a device

  1. 登入 Azure 入口網站Sign in to the Azure portal.
  2. 選擇 [更多服務] > [監視 + 管理] > [Intune]。Choose More Services > Monitoring + Management > Intune.
  3. 在 [裝置和群組] 刀鋒視窗中選擇 [所有裝置]。On the Devices and groups blade, choose All devices.
  4. 選擇您要恢復出廠預設值之裝置的名稱。Choose the name of the device you want to factory reset.
  5. 在顯示裝置名稱的刀鋒視窗中選擇 [恢復出廠預設值],然後選擇 [是] 進行確認。On the blade showing the device's name, choose Factory reset, and then choose Yes to confirm.

如果裝置已開啟且連線,這過程將花費不到 15 分鐘的時間,以將恢復出廠預設值命令傳播到所有裝置類型。If the device is on and connected, it takes less than 15 minutes for a factory reset command to propagate across all device types.

移除公司資料Remove company data

[移除公司資料] 命令會移除使用 Intune 所指派的受管理應用程式資料 (適用時)、設定和電子郵件設定檔。The remove company data command removes managed app data (where applicable), settings, and email profiles that were assigned by using Intune. 移除公司資料會將使用者的個人資料保留在裝置上,Remove company data leaves the user's personal data on the device. 並從 Intune 管理項目移除裝置。The device is removed from Intune management. 下表說明將移除哪些資料,以及在移除公司資料後對於保留在裝置上的資料有何影響。The following tables describe what data is removed, and the effect on data that remains on the device after company data is removed.

iOSiOS

資料類型Data type iOSiOS
Intune 安裝的公司應用程式和相關資料Company apps and associated data installed by Intune 已將應用程式解除安裝。Apps are uninstalled. 將會移除公司應用程式資料。Company app data is removed.

使用行動裝置應用程式管理之 Microsoft 應用程式的應用程式資料會予以移除。App data from Microsoft apps that use mobile app management is removed. 應用程式不會移除。The app is not removed.
設定Settings 由 Intune 原則所設定的設定不再是強制性,而且可由使用者進行變更。Configurations that were set by Intune policy are no longer enforced, and users can change the settings.
Wi-Fi 及 VPN 設定檔設定Wi-Fi and VPN profile settings 已移除。Removed.
憑證設定檔設定Certificate profile settings 憑證會予以移除及撤銷。Certificates are removed and revoked.
管理代理程式Management Agent 移除管理設定檔。Management profile is removed.
電子郵件Email 經由 Intune 佈建的電子郵件設定檔會予移除,並會刪除裝置上的快取電子郵件。Email profiles that are provisioned through Intune are removed, and cached email on the device is deleted.
OutlookOutlook 適用於 iOS 的 Microsoft Outlook 應用程式所收到的電子郵件會予移除。Email received by the Microsoft Outlook app for iOS is removed.
Azure Active Directory (AD) 退出Azure Active Directory (AD) Unjoin 已移除 Azure AD 記錄。Azure AD record is removed.
連絡人Contacts 移除直接從應用程式同步到原生通訊錄的連絡人。Contacts synced directly from the app to the native address book are removed. 無法移除從原生通訊錄同步到其他外部來源的任何連絡人。Any contacts synced from the native address book to another external source cannot be removed.

目前,只支援 Outlook 應用程式。Currently, only Outlook app is supported.

AndroidAndroid

資料類型Data type AndroidAndroid Android Samsung KNOX StandardAndroid Samsung KNOX Standard
網頁連結Web links 已移除。Removed. 已移除。Removed.
未受管理的 Google Play 應用程式Unmanaged Google Play apps 應用程式和資料仍會保持安裝。Apps and data remain installed. 應用程式和資料仍會保持安裝。Apps and data remain installed.
未受管理的企業營運應用程式Unmanaged line of business apps 應用程式和資料仍會保持安裝。Apps and data remain installed. 最後會將應用程式解除安裝並移除應用程式的本機資料。Apps are uninstalled and data local to the app is removed as a result. 未移除應用程式外 (例如 SD 記憶卡上) 的任何資料。No data outside the app (for example, on an SD card) is removed.
受管理的 Google Play 應用程式Managed Google Play apps 將會移除應用程式資料。App data is removed. 應用程式不會移除。App is not removed. 應用程式外 (例如 SD 記憶卡上) 受 MAM 加密保護的資料仍維持加密狀態且無法使用,但未移除。Data protected by MAM encryption outside the app (for example, an SD card) remain encrypted and unusable, but aren't removed. 將會移除應用程式資料。App data is removed. 應用程式不會移除。App is not removed. 應用程式外 (例如 SD 記憶卡上) 受 MAM 加密保護的資料仍維持加密狀態,但未移除。Data protected by MAM encryption outside the app (for example, an SD card) remain encrypted, but aren't removed.
受管理的企業營運系統應用程式Managed line of business apps 將會移除應用程式資料。App data is removed. 應用程式不會移除。App is not removed. 應用程式外 (例如 SD 記憶卡上) 受 MAM 加密保護的資料仍維持加密狀態且無法使用,但未移除。Data protected by MAM encryption outside the app (for example, an SD card) remain encrypted and unusable, but aren't removed. 將會移除應用程式資料。App data is removed. 應用程式不會移除。App is not removed. 應用程式外 (例如 SD 記憶卡上) 受 MAM 加密保護的資料仍維持加密狀態且無法使用,但未移除。Data protected by MAM encryption outside the app (for example, an SD card) remain encrypted and unusable, but aren't removed.
設定Settings 由 Intune 原則所設定的設定不再是強制性,而且可由使用者進行變更。Configurations that were set by Intune policy are no longer enforced, and users can change the settings. 由 Intune 原則所設定的設定不再是強制性,而且可由使用者進行變更。Configurations that were set by Intune policy are no longer enforced, and users can change the settings.
Wi-Fi 及 VPN 設定檔設定Wi-Fi and VPN profile settings 已移除。Removed. 已移除。Removed.
憑證設定檔設定Certificate profile settings 憑證會予以撤銷,但不會移除。Certificates revoked, but not removed. 憑證會予以移除及撤銷。Certificates removed and revoked.
管理代理程式Management Agent 撤銷裝置系統管理員權限。Device Administrator privilege is revoked. 撤銷裝置系統管理員權限。Device Administrator privilege is revoked.
電子郵件Email n/a (Android 裝置不支援電子郵件設定檔)n/a (email profiles are not supported by Android devices) 經由 Intune 佈建的電子郵件設定檔會予移除,並會刪除裝置上的快取電子郵件。Email profiles that are provisioned through Intune are removed, and cached email on the device is deleted.
OutlookOutlook 適用於 Android 的 Microsoft Outlook 應用程式所收到的電子郵件會予移除。Email received by the Microsoft Outlook app for Android is removed. 適用於 Android 的 Microsoft Outlook 應用程式所收到的電子郵件會予移除。Email received by the Microsoft Outlook app for Android is removed.
Azure Active Directory (AD) 退出Azure Active Directory (AD) Unjoin 已移除 Azure AD 記錄。Azure AD Record removed. 已移除 Azure AD 記錄。Azure AD Record removed.
連絡人Contacts 移除直接從應用程式同步到原生通訊錄的連絡人。Contacts synced directly from the app to the native address book are removed. 無法移除從原生通訊錄同步到其他外部來源的任何連絡人。Any contacts synced from the native address book to another external source cannot be removed.

目前,只支援 Outlook 應用程式。Currently, only Outlook app is supported.
移除直接從應用程式同步到原生通訊錄的連絡人。Contacts synced directly from the app to the native address book are removed. 無法移除從原生通訊錄同步到其他外部來源的任何連絡人。Any contacts synced from the native address book to another external source cannot be removed.

目前,只支援 Outlook 應用程式。Currently, only Outlook app is supported.

Android for WorkAndroid for Work

從 Android for Work 裝置移除公司資料會移除該裝置上工作設定檔中的所有資料、應用程式和設定。Removing company data from an Android for Work device removes all data, apps, and settings in the work profile on that device. 這會從 Intune 管理淘汰裝置。This retires the device from management with Intune. Android for Work 不支援恢復出廠預設值。Factory reset is not supported for Android for Work.

WindowsWindows

資料類型Data type Windows 8.1 (MDM) 和 Windows RT 8.1Windows 8.1 (MDM) and Windows RT 8.1 Windows RTWindows RT Windows Phone 8 和 Windows Phone 8.1Windows Phone 8 and Windows Phone 8.1 Windows 10Windows 10
Intune 安裝的公司應用程式和相關資料Company apps and associated data installed by Intune 受 EFS 保護的檔案將會撤銷其金鑰,且使用者將無法開啟檔案。Files protected by EFS will have their key revoked and the user will not be able to open the files. 不會移除公司應用程式。Will not remove company apps. 原本透過公司入口網站安裝的應用程式將會解除安裝。Apps originally installed through the company portal are uninstalled. 將會移除公司應用程式資料。Company app data is removed. 將解除安裝應用程式並且移除側載金鑰。Apps are uninstalled and sideloading keys are removed.
針對 Windows 10 版本 1703 (Creator Update) 和更新版本,不會移除 Office 365 ProPlus 應用程式。For Windows 10 version 1703 (Creator Update) and later, Office 365 ProPlus apps are not removed.
設定Settings 由 Intune 原則所設定的設定不再是強制性,而且可由使用者進行變更。Configurations that were set by Intune policy are no longer enforced, and users can change the settings. 由 Intune 原則所設定的設定不再是強制性,而且可由使用者進行變更。Configurations that were set by Intune policy are no longer enforced, and users can change the settings. 由 Intune 原則所設定的設定不再是強制性,而且可由使用者進行變更。Configurations that were set by Intune policy are no longer enforced, and users can change the settings. 由 Intune 原則所設定的設定不再是強制性,而且可由使用者進行變更。Configurations that were set by Intune policy are no longer enforced, and users can change the settings.
Wi-Fi 及 VPN 設定檔設定Wi-Fi and VPN profile settings 已移除。Removed. 已移除。Removed. 不支援。Not supported. 已移除。Removed.
憑證設定檔設定Certificate profile settings 憑證會予以移除及撤銷。Certificates removed and revoked. 憑證會予以移除及撤銷。Certificates removed and revoked. 不支援。Not supported. 憑證會予以移除及撤銷。Certificates removed and revoked.
電子郵件Email 移除已啟用 EFS 且包含 Windows 電子郵件與附件的郵件應用程式。Removes email that is EFS enabled, which includes the Mail app for Windows email and attachments. 不支援。Not supported. 經由 Intune 佈建的電子郵件設定檔會予移除,並會刪除裝置上的快取電子郵件。Email profiles that are provisioned through Intune are removed, and cached email on the device is deleted. 移除已啟用 EFS 且包含 Windows 電子郵件與附件的郵件應用程式。Removes email that is EFS enabled, which includes the Mail app for Windows email and attachments. 移除 Intune 佈建的郵件帳戶。Removes mail accounts that were provisioned by Intune.
Azure Active Directory (AD) 退出Azure Active Directory (AD) Unjoin 否。No. 否。No. 已移除 Azure AD 記錄。Azure AD Record removed. 不適用。Not applicable. Windows 10 不支援對已加入 Azure Active Directory 的裝置移除其公司資料。Windows 10 does not support remove company data for Azure Active Directory joined devices.

移除公司資料To remove company data

  1. 登入 Azure 入口網站Sign in to the Azure portal.
  2. 選擇 [更多服務] > [監視 + 管理] > [Intune]。Choose More Services > Monitoring + Management > Intune.
  3. 在 [裝置和群組] 刀鋒視窗中選擇 [所有裝置]。On the Devices and groups blade, choose All devices.
  4. 選擇您要從中移除公司資料之裝置的名稱。Choose the name of the device from which you want to remove company data.
  5. 在顯示裝置名稱的刀鋒視窗中選擇 [移除公司資料],然後選擇 [是] 進行確認。On the blade showing the device's name, choose Remove company data, and then choose Yes to confirm.

如果裝置已開啟且連線,將移除資料命令傳播到所有裝置類型的過程將花費不到 15 分鐘的時間。If the device is on and connected, it takes less than 15 minutes for a remove data command to propagate across all device types.

從 Azure Active Directory 入口網站刪除裝置Delete devices from the Azure Active Directory portal

由於通訊問題或遺失裝置,您可能需要從 Azure Active Directory (AD) 刪除裝置。Due to communication issues or missing devices, you might need to delete devices from Azure Active Directory (AD). 刪除命令不會從管理項目中移除裝置,但您可以使用 [刪除] 來移除 Azure 入口網站中已知無法連線且不太可能與 Azure 再次通訊的裝置記錄。The delete command does not remove a device from management but you can use Delete to remove device records from the Azure portal that you know are unreachable and unlikely to communicate with Azure again.

  1. 以系統管理員認證登入 Azure 入口網站中的 Azure Active DirectorySign in to the Azure Active Directory in the Azure portal with your admin credentials. 您也可以登入 Office 365 入口網站,然後使用頁面左側的連結來選擇 [管理] > [Azure AD]。You can also sign in to the Office 365 portal and then choose Admin > Azure AD from using the link on the left side of the page.
  2. 如果您沒有 Azure 訂用帳戶,請建立帳戶。Create an Azure subscription if you don’t have one. 如果您有付費帳戶,應該不需要信用卡或付款 (請選擇 [Register your free Azure Active Directory (註冊免費的 Azure Active Directory)] 訂閱連結)。This should not require a credit card or payment if you have a paid account (choose the Register your free Azure Active Directory subscription link).
  3. 選取 [Active Directory] ,然後選取您的組織。Select Active Directory and then select your organization.
  4. 選取 [使用者] 索引標籤。Select the Users tab.
  5. 選取您要刪除裝置的使用者。Select the user whose devices you want to delete.
  6. 選擇 [裝置]。Choose Devices.
  7. 視需要移除裝置,例如不再使用的裝置,或具有不正確定義的裝置。Remove devices as appropriate, such as those that are no longer in use, or those that have inaccurate definitions.