Endpoint Configuration Manager

Intune – You now have more application deployment options for Intune packages

As you know, you can use Intune/Endpoint Configuration Manager to deploy software, either MSI package, LOB exe or store applications. Well, you now have access to more options to manage application deployments – from managing user notifications to application availability and deployment – for the Windows app (known as Intune package too). This makes it […]

Intune – You now have more application deployment options for Intune packages Read More »

Intune – Android 11 can no longer install trusted root certificate

This is a breaking change introduced by Android 11 when a device is being enroll as Android device administrator. Android 11 can no longer install trusted root certificate on the device – this does not affect Samsung devices. If you are using non Samsung devices enrolled as Android device administrator you will need to manually

Intune – Android 11 can no longer install trusted root certificate Read More »

Intune – Use the Group Policy Analytics report to prepare the migration of your GPO to Endpoint Configuration Manager MDM

For years, IT administrators have been using group policy objects (GPO) – and still continue today – to manage/configure devices, both clients and servers. With the move to a cloud-based devices management, the need to replicate as much as possible settings set using GPO is more and more relevant. To help you prepare moving from

Intune – Use the Group Policy Analytics report to prepare the migration of your GPO to Endpoint Configuration Manager MDM Read More »

Intune – You can now monitor your Windows Defender devices from the portal

As you know, you can manage Windows Defender settings by creating device configuration profiles using Intune/Endpoint Configuration Manager, including devices managed by SCCM (aka on-premises server) – see https://t.co/VG0DaErni1. Well, you can now monitor the health of all the devices protected by Windows Defender directly from the Intune/Endpoint Configuration Manager portal, including the ones managed

Intune – You can now monitor your Windows Defender devices from the portal Read More »

Intune – Additional permissions for the Endpoint Security Manager role

As you know, you can delegate permissions to allow certain administrative or management tasks using RBAC (Role Based Access Control) on Intune/Endpoint Configuration Manager. Well, new permissions have been added to the Endpoint Security Manager role: Initiate Configuration Manager action Microsoft Defender ATP Reboot now Remote lock Rotate BitLockerKeys (preview) Rotate FileVault key Shut down

Intune – Additional permissions for the Endpoint Security Manager role Read More »

Intune – You can now configure application updates settings for Android Devices

As you know, Intune/Endpoint Configuration Manager allows your administrators to publish applications from the various app stores (Google Play, Apple App Store, custom…) to your mobile devices. Well, administrators can now also define the application update settings (user choice, never, using Wi-Fi only or Always). To enable this option, you need to use an Android

Intune – You can now configure application updates settings for Android Devices Read More »

Intune – More devices information now available

The close integration of SCCM and Intune/Endpoint Configuration Manager has made one more step. As you know, you can now see Device Collections and SCCM Client Details from the Intune/Endpoint Configuration Manager (see https://t.co/mp0I0MntlM). Well, now you can also get access to the CMPivot feature (see https://docs.microsoft.com/en-us/mem/configmgr/core/servers/manage/cmpivot), a timeline showing the last activities or Resource

Intune – More devices information now available Read More »

Intune – Deploy printers used with Universal Print with Intune/Endpoint Configuration Manager

As you may know, a new service called Universal Print has been released in preview allowing you replacing your on-premises print servers (see https://t.co/gOagPc8slW). Well, you can now deploy the printers used by with Universal Print using Intune/Endpoint Configuration Manager to your devices. Off course, the first thing to do is to implement and configure

Intune – Deploy printers used with Universal Print with Intune/Endpoint Configuration Manager Read More »

Intune / SCCM – You can now apply Microsoft Defender policy using Intune/Endpoint Configuration Manager on devices managed by SCCM

As you know, SCCM and Intune/Endpoint Configuration Manager are being more and more close with each other. Well, now you can define and apply Microsoft Defender policy from Endpoint Configuration Manager on devices managed by SCCM. To be able to do it, you need to use the latest version of SCCM Current Branch 2002 with

Intune / SCCM – You can now apply Microsoft Defender policy using Intune/Endpoint Configuration Manager on devices managed by SCCM Read More »

Intune / Windows 10 – Unable to turn on BitLocker with conflicting group policy error

Recently I came across an issue turning on BitLocker with the error on a Windows 10 device BitLocker Drive Encryption cannot be applied to this drive because there conflicting Group Policy settings for recovery options on fixed data drives. Also got the error before starting the troubleshooting You can’t create both a recovery password and

Intune / Windows 10 – Unable to turn on BitLocker with conflicting group policy error Read More »