Commands › Exchange Online

Set-DeviceTenantPolicy

Exchange Online ExchangeOnlineManagement Set-*

For more information, see Security & Compliance PowerShell. Use the Set-DeviceTenantPolicy cmdlet to modify your organization's mobile device tenant policy in Basic Mobility and Security in Microsoft 365.

Quick start script

# Set-DeviceTenantPolicy — quick start (serv365.ai)
# 1. Connect (app-only shown; interactive: omit the certificate parameters)
Connect-ExchangeOnline -CertificateThumbprint $thumb -AppId $appId -Organization $org

# 2. Capture the current state first — you cannot roll back what you never recorded
$before = Get-DeviceTenantPolicy
$before | Format-List

# 3. Make the change (dry run first)
Set-DeviceTenantPolicy -RetryDistribution <SwitchParameter> -WhatIf
Set-DeviceTenantPolicy -RetryDistribution <SwitchParameter>

# 4. Verify and diff
$after = Get-DeviceTenantPolicy
Compare-Object ($before | Out-String) ($after | Out-String)

Syntax — 2 parameter sets

RetryDistribution

Set-DeviceTenantPolicy [-Identity <PolicyIdParameter>]
 [-RetryDistribution]
 [-Confirm]
 [-WhatIf]
 [<CommonParameters>]

Identity

Set-DeviceTenantPolicy [-Identity <PolicyIdParameter>]
 [-Comment <String>]
 [-Enabled <Boolean>]
 [-Force]
 [-Confirm]
 [-WhatIf]
 [<CommonParameters>]

Parameters (7)

ParameterTypeRequiredWhat it controls
-RetryDistribution SwitchParameter yes This parameter is reserved for internal Microsoft use.
-Comment String The Comment parameter specifies an optional comment. If you specify a value that contains spaces, enclose the value in quotation marks ("), for example: "This is an admin note".
-Confirm SwitchParameter The Confirm switch specifies whether to show or hide the confirmation prompt. How this switch affects the cmdlet depends on whether the cmdlet requires confirmation before proceeding.
-Enabled Boolean The Enabled parameter specifies whether the policy is enabled. Valid values are:
-Force SwitchParameter The Force switch hides warning or confirmation messages. You don't need to specify a value with this switch.
-Identity PolicyIdParameter The Identity parameter specifies the name of the mobile device tenant policy that you want to modify, but there's only one in your organization. The name of the policy is a GUID value. For example,...
-WhatIf SwitchParameter The WhatIf switch doesn't work in Security & Compliance PowerShell.

Reference facts derived from Microsoft documentation, © Microsoft, licensed CC BY 4.0; restructured with original guidance by serv365.ai.