Event banner
AMA: Windows management with Intune
Event details
Do you manage Windows endpoints in Intune? Do you have questions that extend beyond configuration and involve ensuring security, compliance, and a seamless user experience on Windows? Join this Ask Microsoft Anything (AMA) and engage directly with Microsoft product engineers to get your questions answered. Let’s talk about hardware-backed device attestation, the settings catalog, BitLocker, App Control, firewall settings, baselines, and anything else related to endpoint management and security!
Post your questions in the Comments below. We'll have experts responding in the live stream and others in chat.
This session is part of Microsoft Intune: Tech Community Live. Add it to your calendar, RSVP for event reminders, and post your questions and comments below! This session will also be recorded and available on demand shortly after conclusion of the live event. |
192 Comments
- ramirocondeCopper ContributorWhen attempting to deploy an app for all users to install, the company store app gives either an error or will not install. Is there any guidance for this?
- Joe_Lurie
Microsoft
ramiroconde Without seeing the error or doing any troubleshooting, it's hard to answer this. But make sure you are using the Store app (new) Store app, instead of Store app (legacy) app type. if you are using the (new) app type, you may need to open a ticket so support can view the logs and see what's happening.
- Matt_M830Copper ContributorReporting in Intune is a significant issue for us - in SCCM we have access to hundreds of canned reports we can pull without needing to use workspaces or custom queries (KQL). Can you please speak to the development on the parity of the prebuilt reporting within SCCM to Intune? We can also easily export those reports in CSV and other formats in SCCM.
- BlueLeafCopper ContributorDefinitely a gap. We ended up doing custom graph driven scripts to dump data in csv and creating power bi dashboards for our customers.
- KevinMineweaser_MSFT
Microsoft
Hi Matt, We are actively listening to feedback in the reporting space and prioritizing reporting gaps based on that feedback. Other than the desire for full parity, can you provide more information on the top 3 scenarios and the business problem you need them to resolve. For example, a deployment blocker vs the ability to accelerate and reduce friction. Thanks, -Kevin- Matt_M830Copper ContributorIt's the overall reporting and ease of selection in SCCM vs Intune. A few examples - We often use the software reports in SCCM (Computers with specific software in Add/Remove Programs), and/or reports like looking for specific files on specific devices, various queries (like low disk space - use the query to create a collection within SCCM for example), as well as the hardware reports for specific drivers and components.
- Jonathan_SilversCopper ContributorOur team is working to roll out Restricted User Access for Cloud device access through Thin Clients. Recently we found that the Multi App mode and Kiosk mode inside Intune do not work without logging into the Thin Client with an Entra ID. Is the recommended way to do this without have a Entra ID on the local device to use Assigned Access Device configurations / XML files? Do you have customers who have experience with Intune managed Thin Clients for MultiApp usage? Thanks.
- JFRigotBrass ContributorUsing the Assigned Access device config and Self-driving enrollment in Autopilot automatically creates a local KioskUser0 account with no password. You can use configs to only allow local accounts if that makes sense and play around with the XML (don't use the Kiosk configuration, it misses some components)...
- Char_CheesmanBronze Contributor
Thanks for participating in today's session of AMA: Windows management with Intune! For reference, the panel covered this topic at around 14:00.
- ramirocondeCopper ContributorIs there an option for adding shortcuts via intune where it publishes it on all the users desktops?
- Pete_CooperCopper ContributorDone this recently using this and it worked fine 🙂 - https://techcommunity.microsoft.com/t5/microsoft-intune/deploy-file-to-intune-enrolled-devices-as-win-32-app/m-p/3855954
- Char_CheesmanBronze Contributor
Thanks for participating in today's session of AMA: Windows management with Intune! For reference, the panel covered this topic at around 13:00.
- AntonDobschenskyBrass ContributorIs there an ETA on unattended access with Remote Help? We can't justify switching off of 3rd party tools without that capability. Once that is available it makes it much easier to justify cost of adding the Intune Suite for us.
- RichR-VPSBrass ContributorCan anyone clarify the RH licensing please? is that just the techs offering the help need the license or is it both the techs and the people needing help? The later is pretty cost prohibitive IMO for alot of customers is it not?
- rejohnsonllcCopper ContributorIt should only be required for the tech(s) offering help. A costly "feature" that 80% of users will never need.
- Joe_Lurie
Microsoft
AntonDobschensky This is a common ask and something that we are actively working on. We don't have an ETA on this, but we know it's important and are working on this as part of the solution.
- rejohnsonllcCopper Contributor
This feature has been around since RemoteHelp was released over a year ago. Seems like MSFT would have supported it by now, so maybe it will never come?
- David_S165Brass Contributor
Any plans to have more "Group Policy" function in Intune Policies? Specifically...the reapply behavior. A check box on the policy for reapply would go a long way instead of having to write powershell scripts for remediation when you just want to make sure the policy will try to reapply.
- Andreas_Wi401Copper ContributorWhat is the best way to solve conflicts in intune regarding Configuration profiles and security baselines?
- Char_CheesmanBronze Contributor
Thanks for participating in today's session of AMA: Windows management with Intune! For reference, the panel covered this topic at around 6:40.
- Andreas_Wi401Copper ContributorWe use Co-management authority to enroll our devices as co-managed. Our finding is that this is not really reliable. (time out). Where can we tweak the enrollment process to make it more stable?
- Andreas_Wi401Copper ContributorAs part of the enrollment of devices we initiate the installation of the ConfigMgr agent with the help of Co-Management authority. This was recommended by Microsoft within a support call. (easy to implement / maintain / reliable) We can see that the Intune part is successful. With the start of the installation of ConfigMgr agent we face issues. We saw that the installation took more than 30 min due to Cert Revocation. Therefore we unticked the option in ConfigMgr. This seemed to help. We have checked with Microsoft (support call) the sizing of the server infrastructure - which is ok. RIght now we have an enrollment process which should work fine but is not so reliable as we hoped for which is of course a bad user experience.
- Char_CheesmanBronze Contributor
Thanks for participating in today's session of AMA: Windows management with Intune! For reference, the panel covered this topic at around 34:20.
- Heeeey Dano also joined the AMA :)... Whoop
- Char_CheesmanBronze Contributor
Welcome to the AMA: Windows management with Intune. Let's get started! Post your questions in the Comments. We'll be answering questions in the live stream.