Forum Widgets
Latest Discussions
exclude non Wi-Fi enabled devices for Wi-Fi Configuration Profile
Hi everyone We have a WiFi Configuration Profile in Intune that applies to all company users. Problem is now that the profile tries to apply these WiFi Settings to devices which don't have WiFi capability and Intune throws errors back on these devices. My idea is now to create a group or a script, which checks the device for the presence of a WiFi MAC. When the device has a WiFi MAC, the profile gets applied. Has anyone an idea about how I can achieve this? Or what are your solutions for this scenario? Thanks for every reply 🙂Solvedpreuley30Jan 25, 2025Brass Contributor3.3KViews0likes7CommentsUnexpected error during installation.(0x80070643)
Hello Guys! I appreciate your help, I am trying to deploy the Microsoft 365 apps through Intune, but I got this error Unexpected error during installation. Check the installation logs for additional information (0x80070643), Any advise?CEO24Jan 24, 2025Copper Contributor4Views0likes0CommentsPowershell extract TPM and Envryption Readiness information from Intune
Hi, I'm trying to automate a report on Bitlocker coverage on Intune managed devices. I'm using Graph API to extract device information from Intune, querying this URL: "https://graph.microsoft.com/v1.0/deviceManagement/managedDevices" The result have a property named "isEncrypted" which has true or false. But I also need the information that exists on the Encryption report, about the TPM Version and Encryption readiness. Basically I need what is shown here: How can I extract this information over powershell? ThanksdmarquesgnJan 24, 2025Iron Contributor1.3KViews0likes10CommentsDynamic device group from InTune user groups
We've onboarded a number of users into InTune, and we're all new to it. Previously, they were on MaaS360, which had both device groups and user groups, and you could assign to either individually. A bit shocked InTune can only assign down to the group level. (I know Filters exist, but these only filter by Devices, and take longer than just creating a new group)... Anyway, trying to rebuild things as closely to MaaS as possible. For onboarding, we created user groups, so when a user enrolled, they would automatically get the right policies. We couldn't create a device group until the devices were enrolled AND logged in, and showing in Entra. However, the tenant actually wants the groups to be by DEVICE for various reasons (replacing people, for example). So I have two questions - Is there a way to dynamically generate the device groups, based off each user's group association? Also, since devices can't be grouped without an associated Entra ID (either dynamically or manually), if a user leaves/signs out, will that device automatically lose all it's group associations? if there is another way to get the structure the tenant wants, I'm all ears. But essentially, the devices have different hardware, and they want their department to be tracked even if they have no user.underQualifriedJan 24, 2025Copper Contributor70Views0likes3CommentsAndroid enrolment stuck at installing apps
Hi, We are seeing some issues lately with device enrolment on Android with the wizard getting stuck at installing required apps, even with one app (Intune). I've seen a few posts at the start of the year where this issue also persisted which suggested it was a Google issue, which would seem true here as the issue occurs across multiple tenants. So far we've tried: Leaving the device for 2 hours to install apps Different Android enrolment profiles (Dedicated is primary method) Enrolling via Knox and QR methods Multiple devices Multiple Wi-Fi networks Multiple tenants (one being completely green-field) Removing all entries of the device in Intune and Entra ID before attempting re-enrolment Removed all apps from configuration, leaving just the Intune app as default Unassigned all enrolment restrictions Intune does create a device entry for the device despite not reaching the home screen, with configuration policies showing as successfully applied. Registering the device with Entra is more temperamental though. As mentioned, Dedicated enrolment is our primary method. We did see that a previously enrolled device did successfully enrol when using Fully Managed but this doesn't help us. A new device that had never been enrolled before did enrol successfully and quickly but have yet to it again. We are using Samsung devices running Android 14.ethanchalmersJan 24, 2025Copper Contributor353Views0likes1CommentRemove sccm Client - after change to Intune
We started to migrate devices to Intune insted of the old SCCM server. Devices are Hybrid Azure AD joined using a GPO and thats working just fine. The issue is that, the SCCM client is still present on the machines, and they are stated as Co-managed. On a device when running ccmsetup /uninstall, after a reboot everything is working just fine. But when trying to deploy that script from Intune, nothing happens. Tried to apply the script with a GPO dosent work either..... Am I missing anything?Michael Sigvardt JensenJan 24, 2025Copper Contributor20KViews0likes7CommentsIntune - Multi-App Kiosk Mode Android - Managed Home Screen - How to Toggle Between Open Apps?
Hi there, We use Intune - Multi-App Kiosk Mode for Android - Managed Home Screen quite a bit. However, we'd like to be able to see open Apps and switch between them like you can on a standard Android phone (using the 3 vertical lines icon). I can't find an equivalent function in Managed Home Screen. Any ideas? Ta, Ian HearnesSolvedIan_HearnesJan 24, 2025Copper Contributor36Views0likes3CommentsMicrosoft Graph Command Line Tools Blocked by CA
Hi All I hope you are well. Anyway, I recently turned ON a Conditional Access Policy Template, "Require MDM-enrolled and compliant device to access cloud apps for all users (Preview)" this seems to work fine until our IT Admins try to use the AutoPilot script which gets blocked based on: Microsoft Graph Command Line Tools Any ideas on how to allow AutoPilot / Microsoft Graph Command Line Tools through CA? Info appreciatedStuartK73Jan 24, 2025Iron Contributor460Views0likes13CommentsHow to Getting Started with Intune: SOE Deployment, CIS Compliance, and Device Upgrades
We are planning to use Intune as our endpoint management tool and need guidance to get started. Our environment consists of: Windows 10/Windows 11 Professional devices Some Windows 10 Home Edition devices macOS devices Questions: Where should we begin? My initial plan is to upgrade the Windows 10 Home devices to Windows 11 Professional. How can we deploy a Standard Operating Environment (SOE) using Intune? We need to comply with CIS benchmarks. Considering the numerous configurations required, configuring everything manually via device profiles seems time-consuming. Is it possible to use a pre-configured image and deploy it through Intune? Your guidance and suggestions will be greatly appreciated!madurangac91Jan 23, 2025Copper Contributor29Views0likes1CommentAndroid OS Config - Getting / Setting
Hi All: We are in the middle of enrolling 400 Samsung A9+ Android 14 devices into Intune. Enrollment is going well. Previously, we were on a legacy version of Airwatch. We are using ComPortal, Microsoft Launcher, and have published a dozen or so apps. All is operating fine. We've deployed 200+ devices so far and are migrating the rest through this February. As a healthcare company, we use a mobile EMR that requires the Android devices to have their time and timezone set. Out of the box, the Samsung A9+ enrolled devices are set to 'automatically set time' and 'automatically set timezone'. There are NO configuration properties in Intune to set these. My question is this: I need the ability to gather and report on Android OS configuration settings which Intune doesn't offer. MS Graph API doesn't seem to offer them, though TBH, I'm still looking into this. I need the ability to SET configuration properties in Android that Intune doesn't have as a part of the CONFIGURATION Policies. I'd love to know: Are there any Microsoft Intune Apps (such as the Launcher) that may give us more granular control of the Android settings? Not App Settings, but OS settings. Is there a 3rd Party or Samsung App that we can deploy that may give us some of these options? FOr those of you using Intune for Android device management, what are you doing to control and report on device information that Intune doesn't provide? I would think there would be some type of deployable app to be able to control (set) and (get) Android OS information. There are numerous settings we'd like to be able to SET or GET. New to Android MDM, somewhat new to Intune. We've been using Intune to manage iPhones for a few years now. But using it for Android OS devices is brand new to us. Pardon my lack of knowledge here. Hope some of you may be able to help share some expertise.rbritton69Jan 23, 2025Copper Contributor7Views0likes0Comments
Resources
Tags
- Intune3,960 Topics
- Mobile Device Management (MDM)2,146 Topics
- Mobile Application Management (MAM)789 Topics
- Conditional Access435 Topics
- Software Management416 Topics
- Graph API232 Topics
- Azure Friday157 Topics
- Autopilot105 Topics
- android64 Topics
- iOS52 Topics