Skip to content
English
  • There are no suggestions because the search field is empty.

MRC Mobile App – Intune Onboarding Guide for Administrators

Onboard the MRC mobile app for Microsoft Intune App Protection Policies (MAM)

This guide explains how Intune administrators can onboard the MRC mobile app for App Protection Policies (MAM).

MRC's mobile app is still distributed publicly through the Apple App Store and Google Play Store — that hasn't changed. However, the app has been updated to:

  • Use the Intune App SDK natively (rather than the App Wrapping Tool)
  • Use MSAL (multi-tenant) for authentication
  • Use a new iOS bundle ID and Android package name

Admins need to add these new identifiers to Intune as Custom Apps so App Protection Policies apply correctly.

What Do Admins Need to Update?

  • Add MRC's new app IDs as public store apps in App Protection.
  • Update MAM App Protection Policies to target the new app.
  • Approve MSAL admin consent in Azure Entra ID, if prompted.

What Are the Prerequisites?

  • Intune App Protection licensing: Users need licensing that supports MAM without device enrollment.

  • Admin consent for MRC's MSAL app: Since MRC uses a multi-tenant Azure AD application, the first user login in your organization may trigger an admin consent prompt. An Entra admin must approve this once before users can authenticate — see "How Do I Grant Admin Consent in Azure Entra ID?" below.

How Do I Add MRC as a Public Store App?

Intune needs the new app identifiers in order to apply App Protection Policies.

iOS (App Store distribution):

  1. Open Microsoft Intune Admin Center > Apps > App Protection Policies > iOS/iPadOS > Apps > Add Apps.
  2. Select iOS Store App.
  3. Enter the Bundle ID: com.myrepchat.myrepchatforintune.
  4. Enter the App Store URL: https://apps.apple.com/us/app/myrepchat-for-intune/id6630801942.
  5. Click Save.

Android (Play Store distribution):

  1. Open Apps > App Protection Policies > Android > Apps > Add Apps.
  2. Choose Managed Google Play app and search the Play Store — or, if it's not indexed yet, select Store App and enter the package name manually.
  3. Enter the package name: com.myrepchat.myrepchatforintune.
  4. Enter the Play Store URL: https://play.google.com/store/apps/details?id=com.myrepchat.myrepchatforintune.
  5. Click Save.

How Do I Apply App Protection Policies?

  1. Go to Apps > App Protection Policies.
  2. Create or edit your iOS and Android policies.
  3. Under Targeted Apps > Select Apps, add both the MRC iOS bundle ID and MRC Android package name.
  4. Assign the policies to your user groups.

These policies enforce: app PIN, copy/paste restrictions, save/open restrictions, and selective wipe. No device enrollment is required.

How Do I Grant Admin Consent in Azure Entra ID?

Since MRC uses MSAL multi-tenant authentication, the first user in your organization to sign in may trigger an admin consent prompt. If this happens, an Entra admin must approve the FMG MyRepChat application once for your tenant before other users can authenticate.

  1. Open the Azure Portal > Azure Active Directory (Entra ID) > Enterprise Applications.
  2. Search for FMG MyRepChat (or the App Registration ID provided by MRC).
  3. Open the application and go to Permissions.
  4. Select Grant admin consent for [your organization] and confirm.

Once consent is granted, all users in your tenant can sign in without seeing the prompt again. If you're not prompted automatically, MRC can provide a direct admin consent URL on request.

How Do I Configure Conditional Access? (Optional)

MRC supports Conditional Access using MSAL.

  1. Open Azure AD > Security > Conditional Access.
  2. Create a new policy.
  3. Assign:
    • Users: MRC users
    • Cloud apps: MRC MSAL App ID
  4. Under Grant, select Require app protection policy.

This enforces protected sessions only.

What Does the User Experience Look Like?

After installing MRC from the public app stores:

  1. The user signs in with Microsoft (MSAL).
  2. If required, an admin consent prompt appears once.
  3. Intune recognizes the app as MAM-enabled.
  4. Protection policies apply automatically — no device enrollment needed.

How Do I Test This Setup?

Test Scenario Expected Result
Install from store Installs normally
Login via MSAL Login succeeds
MAM policy enforcement PIN required, if configured
Copy/paste behavior Matches policy settings
Selective wipe Removes MRC corporate data
Conditional Access block Works, if configured

What Information Does MRC Provide to Intune Admins?

  • iOS Bundle ID
  • Android Package Name
  • App Store URLs
  • MSAL App Registration ID
  • Required scopes and permissions
  • Optional admin consent URL

For support or integration help, our Engineering team can work directly with your MDM/MAM team.