Microsoft Intune

Intune – Remove noncompliant devices

Intune/Endpoint Configuration Manager has been updated to automatically remove non compliant devices. This will obviously remove the devices from Intune/Endpoint Configuration Manager, but also ensure all corporate data/applications are also being removed from the devices. This will be triggered after administrator approval and after the configured compliance days value is reached. This can be accessed […]

Intune – Remove noncompliant devices Read More »

Intune – New security focused policies available in preview

As you know, Intune/Endpoint Configuration Manager allows you to define policies to managed devices configuration and security settings. Until now, all these configuration settings were available only using the Devices\Configuration Profiles and some of these settings were associated with profile type not always directly related to security. To help you and your security teams to

Intune – New security focused policies available in preview Read More »

Intune – You can now change the primary user of a Windows Device

When you onboard your Windows device in Intune, the device is automatically associated with the user registering the device; this user is called Primary User. Until now, it was not possible to change the primary user, unless unregistering and re registering the device using another user account. Good news, changing the Primary User associated with

Intune – You can now change the primary user of a Windows Device Read More »

Intune – the Managed Browser is going to be deprecated and removed

As it has been already announced earlier, the Intune Managed Browser is going to be deprecated and removed to be replaced by Microsoft Edge Mobile. Starting January 27, 2020 Intune will no longer support the Managed Browser. Starting February 1, 2020 the Intune Managed Browser will no longer be available in the application store for

Intune – the Managed Browser is going to be deprecated and removed Read More »

Intune – New administration roles available

A new administration role for Intune has been made available – Endpoint Security Manager. This new role is an extension of the the Security Administrator role, to allow you The associated permissions with this new Endpoint Security Manager are: Read, Create, Update, Delete, and Assign Device Compliance Policies Read, Delete, and Update Managed devices Read,

Intune – New administration roles available Read More »

Intune – You can now use a device-based certificate for all operating system

As you may already know, you are able with Intune to provide a PKCS certificate for user when connecting to WiFi or VPN networks (see https://docs.microsoft.com/en-us/intune/protect/certficates-pfx-configure#create-a-pkcs-certificate-profile for more details). If you wanted to use a PKCS certificate for device based authentication, this was only possible for macOS based devices. Well, good news, the latest update

Intune – You can now use a device-based certificate for all operating system Read More »

Intune – Manage Outlook organizational data notification

A new application protection policy setting has been introduced in Intune to let you manage Outlook Mobile notification. With this new setting, administrator can define if notification from Outlook Mobile (email and calendar) can be (or not) by displayed on the lock screen – this is available for both Android and iOS devices, including wearable

Intune – Manage Outlook organizational data notification Read More »

Intune – You can set the Feature Update you want to stay on

By now you know, a new version/build of Windows 10 is known as Feature Update being released roughly every 6 months. You also already know that you can manage the update feature on Windows 10 with Intune policy. Well, a new policy capability has been added to Intune to let you define the Windows feature

Intune – You can set the Feature Update you want to stay on Read More »

Intune – You can now define a configuration profile to lock down firmware settings

Microsoft Intune now allows you to create a device configuration profile to manage and lock down firmware settings. This profile applies to UEFI Windows 10 devices, letting you enabling/disabling virtualization, built-in hardware (camera, micro and speakers, boot options…) To start using, logon to your Azure portal (https://portal.azure.com/) and reach out the Intune\Device Configuration\Profiles  or Device

Intune – You can now define a configuration profile to lock down firmware settings Read More »

Intune – Get reports and trends about your managed devices

Intune is now providing built-in reporting capabilities (in preview) from the portal to give you an easier way to get reporting about your devices. To start using it, logon to either your Azure portal (https://portal.azure.com/) and then reach out the Intune blade, or to your Device Management portal (https://devicemanagement.microsoft.com/). From there you will see the

Intune – Get reports and trends about your managed devices Read More »