Event banner
AMA: Securely manage iOS/iPadOS and macOS endpoints with Intune
Event details
Let’s chat about the latest and greatest in Intune Apple device management! With the introduction of Just-In-Time (JIT) functionality, your users will be able to enjoy a more seamless onboarding experience on bring your own device (BYOD) scenarios. The iOS Company Portal app will no longer be required for Azure AD registration and allow you to move towards a web-based device enrollment flow for BYOD scenarios. Similarly, the updated Account-Driven User Enrollment flow enables faster user enrollment for BYOD scenarios utilizing JIT registration without requiring the iOS Company Portal app. We are streamlining DMG app deployments and reducing vulnerabilities in your Mac environment by keeping macOS devices updated with the latest software updates. We are bringing the ability to use your Azure AD password to log in to your Intune-managed Macs.
Have questions? We’re here to answer them! Ask Microsoft Anything!
Post your questions in the Comments below. We'll have experts responding in the live stream and others in chat. |
This AMA is part of a Microsoft Intune edition of Tech Community Live. Visit https://aka.ms/TCL/Intune for the full agenda.
95 Comments
- tushardeorukhkarCopper ContributorFor app deployment, How do we simplify the plist to configure app. I am facing eset and there is not much material available.
- amordachCopper Contributor
What is Platform SSO for Mac going to be available to allow for synchronized login credentials between Azure and the device? How will this impact the device enrollment?
- Char_CheesmanBronze Contributor
Thanks for participating in today's AMA on Securely manage iOS/iPadOS and macOS endpoints with Intune! For reference, the panel covered this topic at around 33:00.
- tushardeorukhkarCopper ContributorWhen will we have the option to create a local account controlled by Azure AD.
- JaminAlmond
Microsoft
Hello Tushar, This is discussed in the below blog! https://techcommunity.microsoft.com/t5/microsoft-intune-blog/10-ways-microsoft-intune-improves-apple-device-management/ba-p/3766718
- ThomasSeynhaeveCopper ContributorThere's currently no possibility to exclude Shared iPads from CA & MAM policies, I think because they aren't seen by AAD/Intune as managed devices. Are you aware of these issues and are any improvements on their way?
- Jack_Poehlman
Microsoft
We are aware of this issue and recently added filters support for App protection policy to help customers address this: https://techcommunity.microsoft.com/t5/microsoft-intune-blog/what-s-new-in-microsoft-intune-2305-may-edition/ba-p/3829280- ThomasSeynhaeveCopper ContributorThank you for your answer Jack. I did try the new application filters (device management type equals managed) but MAM policies still seem to apply. Any help on this would be great!
- FuzzyWazHeCopper ContributorWhen will the requirement for preregistering devices in azure using a cloud device administrator be removed when using Authenticator for shared devices?
- Benjamin FrantzCopper ContributorIs there any way we can get multi-app kiosk mode on Shared iOS like we have in Android Enterprise dedicated device? Also, would be nice to have an option to have IT support temporarily exit kiosk mode for troubleshooting on the device with PIN. One other thing that would be EXTREMELY helpful is to have a feature similar to "Network Escape Hatch" on iOS if one of those iOS devices lose WiFi connectivity.
- CiscoC80AZCopper ContributorWe have implemented JIT registration in our environment of over 80k devices, and it works great better than utilizing the forced company portal with user affinity!
- AnyaNovicheva
Microsoft
That's awesome to hear, thank you for that feedback!
- keithchalmersCopper ContributorWill it ever be possible to specify multiple iOS major versions in app protection policy launch conditions? iOS 15 and 16 are both currently supported, but it's only possible to specify one for each action, e.g. Block.
- hanshisantos
Microsoft
Thanks for the feedback, something we can potentially explore.
- TheAutisticTechieBrass ContributorWe have issues with BYOD iOS devices stopping syncing and apps don't deploy at all (support don't know why yet), will the new BYOD changes help resolve these issues?
- Char_CheesmanBronze Contributor
Thanks for participating in today's AMA on Securely manage iOS/iPadOS and macOS endpoints with Intune! For reference, the panel covered this topic at around 21:00.
- justanothersysadminCopper ContributorCan intune mount a persistent smb share path to profiles upon login?
- Char_CheesmanBronze Contributor
Thanks for participating in today's AMA on Securely manage iOS/iPadOS and macOS endpoints with Intune! For reference, the panel covered this topic at around 23:00.