Event details
As organizations move from traditional Active Directory domain joined devices to Microsoft Entra joined devices managed through Intune, many desktop support and system administration teams are facing significant changes in how endpoints are managed and supported.
While the benefits of cloud native management are clear, many day to day administrative tasks that previously relied on domain connectivity, administrative shares, Group Policy, remote management tools, and direct access to the endpoint are changing or no longer function the same way.
Examples include:
- Driver installation and updates during troubleshooting.
• Manual application installations for urgent support situations.
• Remote administrative access for advanced troubleshooting.
• Running scripts and tools interactively on endpoints.
• Accessing administrative shares and traditional management utilities.
• Supporting devices that are off network or operating in a hybrid state.
• Delegating endpoint administration to desktop support staff without granting broad Intune administrative permissions.
My question for the Intune product team is:
What is Microsoft's long term vision for desktop support and endpoint administration in fully Entra joined environments? Specifically, what tools, workflows, and administrative models are expected to replace the traditional domain based methods that desktop and system administrators have relied upon for decades?
Additionally, are there plans to provide more granular operational support capabilities that allow help desk and desktop support teams to perform troubleshooting, software installation, driver management, and remediation tasks without requiring full Intune administrative privileges or complex custom role configurations?
Many organizations understand the strategic direction toward cloud native management, but practical day to day support workflows remain a significant challenge during this transition.
"Are there specific support workflows that Microsoft considers obsolete in an Entra joined world, and if so, what are the recommended replacements?"
Intune does provide many of these capabilities. e.g., there's remote log collection, Tunnel, scope tags, etc. Best to search the community for each specific need to see how Intune customers have achieved each. And of course, our Intune documentation can help.