Allow your organisation to manage your device?

When signing into one of the Microsoft 365 Desktop Apps (Outlook, Word, etc) – you’ll go through a couple of setup Windows, inserting your email address, password, and being asked whether you want to sign into all apps and finally – Allow your organisation to manage your device?

With the question above, if you use Microsoft Intune – it will allow for a simple enrolment process. But if you don’t, then clicking Yes will often result in a strange error message, which creates confusion to the end user.

In this post, I will show you how to prevent the above from being asked.


You have two options to disable this setting, either through the Intune Admin Portal or through the Identity Admin Portal. In this demonstration I will use Identity, as if you don’t have the correct licenses the Intune Admin Portal, may not show for you.

With your Global Admin, log in to Identity via entra.microsoft.com and search for Mobility (MDM and WIP).

Once you click on it, it should produce two services, Microsoft Intune and Microsoft Intune Enrollment.

Go into both of them, and turn on Disable MDM enrollment when adding work or school account on Windows and hit Save.

Going forward, when signing into the Microsoft Desktop App – it should no-longer prompt, Allow your organisation to manage your device?

Leave a comment