Intune iOS Corporate Device Remote Wipe - where to configure

Singh, Irina 0 Reputation points
2024-11-07T16:54:17.94+00:00

I am looking for assistance on where I find the configuration that allows us to remotely wipe corporate owned iOS devices. I have found plenty of instructions on HOW to start a remote wipe, however, based on my searches, the ability to perform a remote wipe is NOT granted by default, it has to be configured. I am looking for instructions on where to configure this ability, or where to find evidence that it has already been configured. I have looked under Configuration Policies, enrollment types, and many other places, however the only mention of the ability to wipe I find, is where you can configure for the device to be automatically wiped after a certain number of failed logons. This is not what Im looking for, Im looking for where we configure that a device can be remotely wiped by an admin, in the first place. The easiest way to explain, is if you were auditing someone's Intune configuration, what is the screenshot or file you would provide to prove that this ability is configured and applied to corporately owned devices.

Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
5,251 questions
{count} votes

1 answer

Sort by: Most helpful
  1. ZhoumingDuan-MSFT 14,050 Reputation points Microsoft Vendor
    2024-11-08T02:18:21.17+00:00

    @Singh, Irina, Thanks for posting in Q&A.

    From your description, I know you want to configure iOS corporate device remote wipe.

    In Intune, currently, we only have the policy to wipe the device after number of sign-in failures as you mentioned.

    https://learn.microsoft.com/en-us/mem/intune/configuration/device-restrictions-ios#password

    For the action you want, we can consider using device actions in Intune to remotely wipe iOS corporate device. And please ensure the user performing the remote wipe or remote retire action in Microsoft Intune needs at least the Wipe and Retire permissions that are available within the "Remote tasks" category

    https://learn.microsoft.com/en-us/mem/intune/remote-actions/devices-wipe

    If you want Intune to implement this feature you mentioned, you can submit your feedback to Intune.

    https://feedbackportal.microsoft.com/feedback/forum/ef1d6d38-fd1b-ec11-b6e7-0022481f8472

    Thanks for your time and understanding.

    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.