Mobile Device Registration User Experience

Technical Paper: Device Compliance with Microsoft Entra and Jamf Pro

Solution
Application
Content Type
Technical Documentation
Utilities & Services
ft:locale
en-US
Users must register their mobile devices with Microsoft Entra ID (formerly Azure AD) for the device's compliance status to be sent to Entra ID. The following section describes the user registration experience.
Note:

You must deploy the Microsoft Authenticator app before users can register their mobile devices with Entra ID. For more information, see Deploying the Microsoft Authenticator App to End Users.

  1. From Jamf Self Service for iOS, the user initiates the registration process by tapping Register on the Register with Microsoft object.
    Note:

    When registering, users must use Safari.

  2. When prompted, the user taps Open to launch the Microsoft Authenticator app.

  3. The user enters their Entra ID authentication credentials in the Microsoft Authenticator app.

  4. When prompted, the user taps Register.

    Jamf Self Service for iOS reopens and displays a registration success message.

Jamf Pro sends mobile device compliance status to Entra ID through Microsoft Intune's Partner Compliance Connector, which forwards the data to Entra ID. The device record is not created in Intune. Compliance status will appear in Entra ID after it is sent from Jamf Pro.

After registering, users must use Microsoft Edge to access approved web apps. For more information, see the following documentation from Microsoft: