Microsoft Intune

Windows 11 – Check if your devices are Windows 11

With the release of the new Windows 11, you can check if your devices are ready for it using Intune/Endpoint Configuration Manager. To identify which devices are ready or not for Windows 11, connect to your Intune portal (https://endpoint.microsoft.com/) and access the Reports\Endpoint Analytics\Work from anywhere blade Then access the Windows tab to get the

Windows 11 – Check if your devices are Windows 11 Read More »

Intune – New unified certificate connector for Intune

As you may know you can use Intune to provide user or device certificate capabilities like: Private and public key pair (PKCS) certificates PKCS imported certificates Simple Certificate Enrollment Protocol (SCEP) Certificate revocation This requires the use of a certificate connector.Well, until now, if you wanted to provide multiple certificate capabilities you had deploy multiple

Intune – New unified certificate connector for Intune Read More »

Intune – You can now format the description of the applications you deployed

As you know Intune/Endpoint Configuration Manager can be used to deploy applications (either LOB [MSI, MSIX, APPX…] or Win32 apps [Intune package]). While deploying applications with Intune, the description field of the deployment is a mandatory field and not much look at as this is usually prepopulated by Intune using the application name. Well, you

Intune – You can now format the description of the applications you deployed Read More »

Intune – You can now supersede applications

Well, this has been a long awaited feature in Intune which is now available in preview: deploy application which supersede a previous one. The current state of this feature only applies for Intune package (aka Windows app (Win32)); this is not yet (?) available for MSI applications. You can configure the supersedence during the application

Intune – You can now supersede applications Read More »

Intune – You can now block printing using non-corporate network printers or non-approved USB printer

You can now control which printers your user can print on. Connect to your Endpoint Configuration Manager portal (https://endpoint.microsoft.com/) and access the Devices\Windows\Configuration profiles blade to create a new custom profile   Then you need to configure the following OMA-URI to block printing from non approved printers and define the approved printers. You can configure

Intune – You can now block printing using non-corporate network printers or non-approved USB printer Read More »

Azure AD – New administration role available to delegate Windows Updates settings

A new Azure Active Directory administration role is available – called Windows update deployment administrator – to delegate Windows Updates deployments through Windows Update for Business. This role allows you to delegate Windows Update for Business settings like when and how updates are deployed to devices. This will help you delegate Windows Update for Business

Azure AD – New administration role available to delegate Windows Updates settings Read More »

Intune – Administrators can now locate devices

When you manage a fleet of devices, it is some time important to be able to locate these devices, especially when reported lost or stolen by end-users before requesting a remote wipe. Well, Intune administrators can now request to locate a Windows device from the Endpoint Configuration Manager portal (https://endpoint.microsoft.com/). To locate a device, connect

Intune – Administrators can now locate devices Read More »

Intune – You can now offboard your hierarchy

As you know, System Center Configuration Manager Current Branch (SCCM CB) – aka Microsoft Endpoint Configuration Manager – can be integrated with Intune (aka Microsoft Endpoint Manager) to provide hybrid device management capabilities, also called co-management. This integration is called tenant attach onboarding. Well, while this hybrid device management provides lot of value for SCCM

Intune – You can now offboard your hierarchy Read More »

Intune – You can now enroll and manage Windows Virtual Desktop (preview)

By now, you already know that Intune/Endpoint Configuration Manager is the Microsoft solution for managing devices (either Windows, iOS or Android) by deploying configuration policies (configuration profiles), deploying applications to the devices or protect your corporate data with application protection policies. You may already know the Windows Virtual Desktop, the Windows 10 multi session solution

Intune – You can now enroll and manage Windows Virtual Desktop (preview) Read More »

Intune – You can now use filters to apply policies, applications or profiles on devices

As you know, Intune (aka Endpoint Configuration Manager) is a device management solution allowing you to apply configuration profiles, policies or deploy application on devices. These assignment are done using device groups – usually dynamic ones to target specific OS, enrollment type or manufacturer. Well, while these dynamic groups are quite useful they may be

Intune – You can now use filters to apply policies, applications or profiles on devices Read More »