Dont think there is a simple way of doing it out of the box.
You might have to restrict the CRM URL from being accessed via there Mobile Device using some MDM system.
But you cant stop a user from going to the desktop and entering the system that way. Unless you added JavasScript to make all forms readonly if they contain a Mobile User security role?