Forum Discussion

Konaguy's avatar
Konaguy
Copper Contributor
Nov 23, 2025

MDE vs Intune Windows Device Management

I have started applying security policies for Defender for Endpoint using MDE to manage them, adding the MDE tag to my Windows 11 machines. If I am migrating to Intune management, is it necessary to offboard the devices first, before applying the auto-enroll GPO and onboarding device configuration to the machines? 

2 Replies

  • rahuljindal's avatar
    rahuljindal
    Bronze Contributor

    If you are using MDE tagging, then most likely you would have enabled the Defender connector in Intune along with toggling on Configuration management feature. You don’t need to offboard the devices. However, for full Intune mangement, you will need to enroll the devices in Intune and make sure that devices are not MDE tagged anymore. Your MDE policies would be synced with Intune as well so you can continue using them as is. 

    • Konaguy's avatar
      Konaguy
      Copper Contributor

      Thank you for the feedback. I appreciate it. 

Resources