Android Enterprise Work Profile Wipe

Daniel Birrell 41 Reputation points
2020-08-11T21:42:10.577+00:00

Hi

When configuring devices in Android Enterprise Work Profile we are choosing the option that 'wipes the work profile' if a user enters in an incorrect pin 5 times.

One would assume that this would only affect the Work Profile itself.

However this also take control of the device pin. If we enter device pin wrong 5 times the device will factory reset.

The setting we are utilising under device configuration/work profile specifically states that the work profile will be wiped.

Why is this affecting the device itself? Is it possible to have only the incorrect pin wipe affect the work profile itself and not the device? This after all I assumed was the point of this setting in the first place.

Am I missing something here?

Microsoft Intune Configuration
Microsoft Intune Configuration
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Configuration: The process of arranging or setting up computer systems, hardware, or software.
1,783 questions
Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,301 questions
0 comments No comments
{count} votes

6 answers

Sort by: Most helpful
  1. Crystal-MSFT 45,571 Reputation points Microsoft Vendor
    2020-08-12T05:42:45.787+00:00

    Hi,

    For the issue, please check if we have set the following setting for the device "Number of sign-in failures before wiping device
    " For this setting , it will wipe all the data if the wrong password meet the number we configured:
    17058-image.png

    However, if it is not set, please get a screen shot to let us know which setting we have configured.

    0 comments No comments

  2. Daniel Birrell 41 Reputation points
    2020-08-12T07:02:59.247+00:00

    Hi

    These are personal devices.

    These are not corporate owned devices with a work profile.

    These are BYOD devices which we are migrating from Android Device Administrator to Android Enterprise Work Profile.

    If I remove the setting from 'wipe work profile if incorrect pin in entered' then this removes the wipe function from the device itself

    0 comments No comments

  3. Daniel Birrell 41 Reputation points
    2020-08-12T07:35:01.223+00:00

    17153-image.png

    Hi Again

    You can see here that I have chosen to the option for work profile but not for the device

    0 comments No comments

  4. Daniel Birrell 41 Reputation points
    2020-08-12T12:39:28.453+00:00

    I have raised this with Microsoft support and they have recreated the issue and advised this is not expected behaviour. They are looking into it.

    I began to think it was a bug when I removed the value from work profile pin delete and it also then removed the warning on my device pin.

    Intune is a bit of a mess at the moment - lots of health advisory messages. Android For work devices becoming uncompliant. Luckily we have not seen this as yet.

    I will keep you updated on the outcome of this issue

    0 comments No comments

  5. Crystal-MSFT 45,571 Reputation points Microsoft Vendor
    2020-08-13T02:43:30.557+00:00

    Hi,

    Thanks for the update. I know a Microsoft support case is opened and there's an engineer working on this issue. Given the situation, we will wait for your update.

    Thanks and have a nice day!

    0 comments No comments