My Journey: How to Enroll and Manage BYOD Mobile devices in #MEM — Part 1

Meron
5 min readJul 30, 2021

Everything negative — pressure, challenges — is all an opportunity for me to rise. Kobe Bryant

Now a days we all concerned about protecting our private or public data, no matter how negligent or democrat we are on our day to day personal or business-related decision we want to protect our data. Whether the fancy or silly joke we made with our friends or to the sensitive corporate secret. No matter how we try we have one vulnerability and weak link, our Mobile device!

We are so attached to our mobile device, it accompanies us to the bathroom the most secret and unterritorial privacy sanctuary a human being not willing to share with the other human being has been compromised by a handheld portable device which is equipped with all necessary gadgets that make us vulnerable Including camera and sound.

Please don’t mention the recent incidents we witnessed people using bathroom in the middle of a meeting broadcasting live their so protected private territory. Mobile device as much as it makes our life easy makes it the most vulnerable to

Therefore, on this blog we will cover BYOD device enrollment on MEM and how we can manage and protect data by implementing different controls

Shall we,

iOS/iPad — BYOD Device Enrollments to MEM/Intune

How we start

1. Open https://endpoint.microsoft.com/

2. Select Devices

3. Enroll Device

4 Select Apple Device Enrollment

5 Select Apple MDM Push Certificate

Note : Follow the Instructions on the Apple MDM Push Certificate

· Agree to the Terms

· Download your CSR — (Certificate signing request (.csr)) — keep the downloaded file in a accessible location we are going to need it later on the enrollment process

· To Create the Apple MDM Push certificate — follow the steps under How to Create the Apple Push certificate section below

· Use the apple ID you used to create the apple push certificate

· Browse the Apple MDM push certificate you downloaded earlier and upload it on the last section of the wizard you follow below

How we are progressing

How to Create the Apple Push Certificate

  1. Sing in with your Apple ID Sign In — Apple or Create one if you don’t have an existing apple ID Create Your Apple ID — Apple

Tips:

  • don’t use personal Apple ID or create a company owned Apple ID to use in your MEM environment
  • The Apple push certificate expires in a year (12 Months), to the renew you need to log back with the Apple ID you created the push certificate with . if you use a personal Apple ID and the person left the company, you have to re-enroll the devices to MEM with the new certification

2. Create the Apple Push certificate using the following link https://identity.apple.com/pushcert/

  • select agree to the terms and conditions and Accept
  • Tips — Scott Duffey in his book MEM regarding putting a note while you create the push certificate “Notes are handy for renewing certificates, if you have accumulated more than once after testing a multiple MDM products or maintaining multiple lab environments”

3. on choose file on the beginning of this lab we downloaded from the MEM environment .CSR file — choose and upload the file

Sample Note: “Blacklion is creating this push certificate for use with MEM as per of a Lab Exercise” — Thanks Scott

4. download the push certificate and place it on appropriate location to retrieve it when we return to complete the steps we started earlier

the file extension is .pem

How we finalizing the process

  1. return to your MEM admin center https://endpoint.microsoft.com/
  2. on step 4 enter the apple ID you used to create the push certificate

3 upload the push certificate you downloads from your apple environment

and you will receive a notification on the MEM environment when the certificate is uploaded successfully

Part 2 — we will cover all the steps from the BYOD device

Useful Links

· https://docs.microsoft.com/en-us/microsoft-365/admin/basic-mobility-security/enroll-your-mobile-device?view=o365-worldwide

· https://docs.microsoft.com/en-us/mem/intune/fundamentals/whats-new#week-of-july-26-2021-service-release-2107

Recommendation

· Scott Duffey — https://www.learningmem.com/

· Intune Training

· Daniel Engberg News Letter — https://www.danielengberg.com/

Reference for Learning

- https://docs.microsoft.com/en-us/learn/

- https://app.pluralsight.com/ — Free for Azure courses

- Thomas Maurer — Cloud and Datacenter

Always let me know.

1. If you have any questions, please do not hesitate to reach out.

2. If you want me to cover a topic.

3. If you are struggling in finding your next step in your career, we will work together to find your journey and find the right mentors to connect to

OR

You want a study buddy — Let me know Love to Help!

E-mail: blacklionm@protonmail.com

Twitter: @Blacklionm1

#Blacklionm1 #MEM #WomenITpros #Immigrant #Dreamer #microsoftcertification #certification #Intune #MEM #MDM #MobileDeviceManagement #Microsoft

Especially thank you to the people who laid the foundation for my journey and the road map to my career.

Christian Degu, Yung, Thomas_Live, Cgill, Simon Binder, BobBissen.

--

--