How to Disable User Restriction Policies Set by Device Admin App

In this guide, we will show you the steps to disable the user restriction policies on your Android device which is set by the device admin app. If you are in the work profile or using a Device Administrator app like Microsoft Intune, then the admin might have set some user restriction policies as non-functional. In some cases, a device-wide policy might be implemented, which will even have an effect outside the work environment [i.e., in your personal profile].

The perfect example of the same is the DISALLOW_INSTALL_UNKNOWN_SOURCES_GLOBALLY policy, which will allow the Work Profile App (such as Microsoft Intune Company Portal) to disable the permission of installing APKs from unknown sources GLOBALLY, i.e., across both the work and even your personal profile!

Another such example is ensure_verify_apps, which will force the Play Store to run its Play Protect for apps being installed across both the personal and work profiles [you can have a look at all such restrictions on the Android Developer site ]. This is something that infuriates the device owner, and rightly so, because whatever happens in Work Profile should stay in Work Profile; it should not have the privilege to impact their Personal Profile.

But since that is not the case, it has raised quite a few eyebrows. And rightly so. Well, not anymore! There now exists a nifty method using which you can disable the user restriction policies on your Android device which is set by the device admin app. And in this guide, we will show you how to do just that. So without further ado, let’s check it out.

How to Disable User Restriction Policies Set by the Device Admin App

Disable User Restriction Policies Set by Device Admin App - 1

Before starting, please take a complete device backup. Droidwin and its members wouldn’t be held responsible in case of a thermonuclear war, your alarm doesn’t wake you up, or if anything happens to your device, and data by performing the below steps.

  1. First, root your device via Magisk / KernelSU / APatch .
  2. Then, install the LSPosed Framework on your device.
  3. Next up, download and install the Fu*k Device Policy .
  4. Launch LSPosed, go to Modules, enable Fu*k Device Policy.
  5. Then restart your device for the module to be activated.
  6. Only apply this module to System Framework, not to any other app like Microsoft Intune.
  7. If you do so, then Microsoft Intune will be able to detect root and LSPosed on your device.
  8. Now, get hold of all the restriction policy values from here .
  9. Then, put the values you want to disable in this module’s app. Make sure to input one policy in one line.
  10. To check what restriction policies are applied on your device, use the below command: adb shell dumpsys device_policy
  11. You should check the value under the [userRestrictions:] section.
  • Android Enhanced: Perfect LSPosed Mod to Customize your Pixel
  • Fix Bootloop after Flashing LSPosed Module [Video]
  • How to Remove/Disable LSPosed Loaded Notification
  • How to Install the New Google Clock on any Android Device
  • How to Enable Expressive Design in Android 16/15
Google preferred - 2 Google preferred - 3

(Cancel Reply)

Δ