Assigning Microsoft Intune App Protection policies to user groups and enlightened apps in the Azure Portal

Assign Microsoft Intune App Protection policies that are created in the IBM® MaaS360® Portal to an Azure user group or an enlightened app in the Azure Portal.

Assigning policies to user groups in the Azure Portal

Intune App Protection policies apply to user groups only. You cannot apply an Intune App Protection policy to device groups, a single user, or a device.
  1. From the IBM MaaS360 Portal Home page, select Users > Groups > Add > User Directory Group. The Add User Directory Group window is displayed.
  2. Enter a distinguished user group name (for example, Group 1) and then enable settings that apply to the imported Intune App Protection policy for the user group.
  3. From the MaaS360 Portal Groups page, select the group that you imported in step 1, and then select More > Change Policy.
  4. Select the iOS MAM Policy, and then click Submit.The policy is assigned to the user group and is displayed in the Assignments section in the Azure Portal:(You can also use the same procedure to apply and publish an Android MAM policy to user groups. The policy is also displayed in the Assignments section in the Azure Portal.)

Assigning policies to enlightened apps in the Azure Portal

Intune App Protection policies apply to enlightened apps only. All apps that are listed in the Azure Portal are enlightened apps.

To assign a policy to an enlightened app, follow these steps:
  1. IBM MaaS360 Portal Home page, select Apps > Catalog > Add > iOS > iTunes App Store App to add the app that you want to apply the Intune App Protection policy to.
  2. Enter details about the app and make sure that you select Policies and Distribution > Enable Intune before you add the app.
  3. Go to Security > Policies, and then select Default Intune IOS Policy.
  4. In the Applications section, configure the app that you added in step 1, and then click Save and Publish to apply the policy to the app. The policy is assigned to the app and is displayed in the Target apps section in the Azure Portal:(You can also use the same procedure to apply and publish an Android MAM policy to apps. This policy is also displayed in the Target apps section in the Azure Portal.)