Event banner
AMA: Securely manage iOS/iPadOS and macOS endpoints with Intune
Event details
Let’s chat about the latest and greatest in Intune Apple device management! With the introduction of Just-In-Time (JIT) functionality, your users will be able to enjoy a more seamless onboarding experience on bring your own device (BYOD) scenarios. The iOS Company Portal app will no longer be required for Azure AD registration and allow you to move towards a web-based device enrollment flow for BYOD scenarios. Similarly, the updated Account-Driven User Enrollment flow enables faster user enrollment for BYOD scenarios utilizing JIT registration without requiring the iOS Company Portal app. We are streamlining DMG app deployments and reducing vulnerabilities in your Mac environment by keeping macOS devices updated with the latest software updates. We are bringing the ability to use your Azure AD password to log in to your Intune-managed Macs.
Have questions? We’re here to answer them! Ask Microsoft Anything!
Post your questions in the Comments below. We'll have experts responding in the live stream and others in chat. |
This AMA is part of a Microsoft Intune edition of Tech Community Live. Visit https://aka.ms/TCL/Intune for the full agenda.
95 Comments
- IbrarMahmoodCopper Contributor
When will we be having the Shared iPhone Mode similar to the Shared iPad Mode?
- SusanTaylor
Microsoft
This is something that we are dependent on Apple for, however AAD Shared Device mode is also available in Public Preview - https://learn.microsoft.com/en-us/azure/active-directory/develop/msal-shared-devices https://learn.microsoft.com/en-us/azure/active-directory/develop/msal-ios-shared-devices - Char_CheesmanBronze Contributor
Thanks for participating in today's AMA on Securely manage iOS/iPadOS and macOS endpoints with Intune! For reference, the panel covered this topic at around 20:00.
- sanormanCopper ContributorPlatform Single sign on updates for macOS?
- JaminAlmond
Microsoft
Hello Sanorman, This was discussed in the below blog!!!!!!!!!!!!!!!!!!!!!! https://techcommunity.microsoft.com/t5/microsoft-intune-blog/10-ways-microsoft-intune-improves-apple-device-management/ba-p/3766718
- WZebSmithBrass ContributorWill we ever see more control and automation over iOS update policies? It would be nice if we could create update rings and offset the deployment time by a specified number of days. Currently, the only choices are to select a specific version of iOS, or deploy the latest version as soon as it's released. This means that we have a manual process every time a new version is released if the desired action is to roll it out slowly to the org.
- JaminAlmond
Microsoft
Thank you for the detailed use-case. We will share this with our development team.- benjamin_flamm
Microsoft
Thanks Jamin. Hi Zeb - we're super excited about Apple's recent announcement of declarative software updates and believe it will bring a ton of improvements like the ones you've outlined here. We're actively looking into declarative software updates, so stay tuned to our documentation for announcements.
- Char_CheesmanBronze Contributor
Welcome to today's AMA on Securely manage iOS/iPadOS and macOS endpoints with Intune. Let's get started! Post your questions in the Comments. We'll be answering questions in the live stream.
- Benjamin FrantzCopper ContributorWhen will this JIT registration feature be in General Release and out of Preview?
- AnyaNovicheva
Microsoft
Just in Time registration and compliance remediation will be generally available very soon, please keep an eye out for the In Development documentation for timelines - https://learn.microsoft.com/en-us/mem/intune/fundamentals/in-development Additionally, all public preview features including JIT Registration are still fully supported by Intune while in public preview. Thank you!
- charlton828Copper ContributorAny updates on native Azure AD Sign In for macOS?
- PeterH-LUCopper ContributorCan Intune integrate with an On premise JAMF and still use the Intune feature set to support JAMF? Is there a guide?
- Char_CheesmanBronze Contributor
Thanks for participating in today's AMA on Securely manage iOS/iPadOS and macOS endpoints with Intune! For reference, the panel covered this topic at around 05:00.
- Sree1010Occasional Reader
Thanks for the AMA. How could we wipe off the data from Apple Devices which are already using Organization's Emails of exit employees.? Only Org data.
- Char_CheesmanBronze Contributor
Thanks for participating in today's AMA on Securely manage iOS/iPadOS and macOS endpoints with Intune! For reference, the panel covered this topic at around 07:00.
- IbrarMahmoodCopper ContributorUse App Protection Policies for all users and than you can use the user wipe function and have control over this on BYOD
- Jack_Poehlman
Microsoft
If the device is enrolled and managed by Intune with an email profile deployed to the device, a retire action would remove the email profile an all other profiles deployed to the device while not impacting user's personal data (Pictures, apps, etc). If they are not managed, you would need to use exchange capabilities.
- theaccreditedscotCopper ContributorWill there be a method of identifying Intel vs ARM macs in Intune? Some app developers do not yet provide universal binaries of their apps and require separate installs (not all Intel apps run under Rosetta) and it is very difficult to scope deployments.
- Char_CheesmanBronze Contributor
Thanks for participating in today's AMA on Securely manage iOS/iPadOS and macOS endpoints with Intune! For reference, the panel covered this topic at around 18:30.
- rrenstromBrass ContributorFor Mac devices, are there plans to allow changing the "Primary User" in the Intune console (which currently can be done with Windows devices)? There are many situations where the Intune licensed user changes on a device, and it's a painful workflow to need to retire the device, then have the new user re-enroll simply to change the Primary User, and this leaves the device unmanaged by MDM during this unenroll/re-enroll gap.
- Char_CheesmanBronze Contributor
Thanks for participating in today's AMA on Securely manage iOS/iPadOS and macOS endpoints with Intune! For reference, the panel covered this topic at around 08:00.