When we create an Intune mobile policy in Atlassian Admin (admin.atlassian.com → Security → Mobile app policies → Add Intune mobile policy), iOS devices prompt users to install Microsoft Authenticator as a broker app.
This does not happen with any other apps in our MAM policy (Microsoft Outlook, Teams, Edge, Slack for Intune) — only Atlassian apps trigger this requirement.
Is Microsoft Authenticator a hard requirement for Atlassian apps under Intune MAM on iOS, or is there a way to configure this without it?Is this behaviour specific to how Atlassian apps use MSAL for authentication?Is there a roadmap to support Intune MAM on iOS without requiring the broker app?
Thanks for getting back!
To confirm my undertanding, is the immediate Microsoft Authenticator prompt a result of Atlassian implementing MSAL with the broker authentication flag enabled in the iOS app?
We ask because other third-party MAM apps in our environment do not trigger this broker prompt, which suggests it is specific to how Atlassian has configured MSAL.
Hello @Devika Sahadevan
This is actually expected behavior for iOS Intune MAM. Microsoft and iOS require the Microsoft Authenticator app to act as the authentication broker for Atlassian mobile apps to connect securely.
Check that you have the correct iOS bundle IDs in Intune, granted admin consent in Microsoft Entra, and exempted the necessary auth schemes (like `jiraauth`) if you are using Edge.
There is no public roadmap indicating this broker requirement will change anytime soon.
At least not i know and was able to found.
Best,
Arkadiusz🤠
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.