Intune – You can now define a configuration profile to lock down firmware settings

Microsoft Intune now allows you to create a device configuration profile to manage and lock down firmware settings.

This profile applies to UEFI Windows 10 devices, letting you enabling/disabling virtualization, built-in hardware (camera, micro and speakers, boot options…)

To start using, logon to your Azure portal ( and reach out the Intune\Device Configuration\Profiles  or Device Management portal ( and reach out the Device\Configuration profiles blade

image  image

Then create a new device configuration profile by selecting Windows 10 and later as platform and Device Firmware Configuration Interface as profile type


Leave a Comment

Your email address will not be published. Required fields are marked *

The reCAPTCHA verification period has expired. Please reload the page.