Skip to content

Commit 823053c

Browse files
author
helenclu
committed
CI 117188
1 parent abbf5c1 commit 823053c

File tree

1 file changed

+9
-3
lines changed

1 file changed

+9
-3
lines changed

memdocs/intune/enrollment/device-enrollment-manager-enroll.md

Lines changed: 9 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@ keywords:
88
author: ErikjeMS
99
ms.author: erikje
1010
manager: dougeby
11-
ms.date: 02/22/2018
11+
ms.date: 04/28/2020
1212
ms.topic: conceptual
1313
ms.service: microsoft-intune
1414
ms.subservice: enrollment
@@ -47,6 +47,13 @@ DEM user accounts and devices that are enrolled with a DEM user account have the
4747
- Every device enrolled with DEM accounts needs to be properly licensed to be managed by Intune. The license could be an Intune user license or an Intune device license.
4848
- If you're [enrolling Android Enterprise work profile devices](android-work-profile-enroll.md) by using a DEM account, there is a limit of 10 devices that can be enrolled per account.
4949
- [Enrolling Android Enterprise fully managed devices](android-fully-managed-enroll.md) with DEM accounts isn't supported.
50+
- Applying an Azure AD device restriction to a DEM account will prevent you from reaching the 1,000 device limit that the DEM account can enroll.
51+
52+
## Enrollment methods supported by DEM accounts
53+
54+
- [Windows Autopilot](enrollment-autopilot.md)
55+
- [Windows devices bulk enrollment](windows-bulk-enroll.md)
56+
- DEM initiated via Company Portal
5057

5158
## Add a device enrollment manager
5259

@@ -56,15 +63,14 @@ DEM user accounts and devices that are enrolled with a DEM user account have the
5663

5764
3. On the **Add User** blade, enter a user principal name for the DEM user, and select **Add**. The DEM user is added to the list of DEM users.
5865

59-
## Permissions for DEM
66+
## Permissions required to create DEM accounts
6067

6168
Global Administrator or Intune Service Administrator Azure AD roles are required to
6269
- assign DEM permission to an Azure AD user account
6370
- see all DEM users
6471

6572
If a user doesn't have the Global Administrator or Intune Service Administrator role assigned to them, but has read permissions enabled for the Device Enrollment Managers role assigned to them, they can see only the DEM users they've created.
6673

67-
6874
## Remove device enrollment manager permissions
6975

7076
Removing a device enrollment manager doesn't affect enrolled devices.

0 commit comments

Comments
 (0)