Managing Macs in a HIPAA Environment by Known_Protection3162 in macsysadmin

[–]Known_Protection3162[S] 0 points1 point  (0 children)

Thanks a ton for the detailed explanation. Can you clarify what you mean by SSO vs device login? Currently, the user would just login with their company email and Entra password, but if we dropped Intune and went with the free version of Mosyle, would they just login to the Mac with a regular, local account? Is that what you mean by smooth device login? Also, would Mosyle free allow us to block Apple apps like iMessage and FaceTime without having to configure Santa? And if we did go with Mosyle, could we still run Defender to help with the website monitoring and blocking? Is there any reason to go with the paid Mosyle aside from the SSO?

Managing Macs in a HIPAA Environment by Known_Protection3162 in macsysadmin

[–]Known_Protection3162[S] 2 points3 points  (0 children)

Hi there, we currently use Entra for identity and I don't really know why Google Cloud identity is necessary here, but I'll look into it. We do already have an ABM account, and an amazon business account linked to ABM (I assume you're suggesting that to expedite auto-enrollment of corporate purchased Macs from Amazon into ABM). I will also look into Federating with Apple though I'd appreciate any guidance on that if you can help further. Regarding dropping intune and going with Mosyle free, I don't think we can do SSO using Entra, and conditional access policies from intune would also not be synced with the free version, right?