Event details
Do you use Intune to manage your device estate? Are there features you need to go fully cloud-native? What would make day-to-day device management easier? Are you exploring or the Intune Suite to unify endpoint management and security solutions into one bundle? Are there capabilities you need from Enterprise App Management, Microsoft Cloud PKI, Advanced Analytics, or other Intune Suite solutions? Join us for an opportunity to share your feedback and requests with the product team and engineers building Microsoft Intune, the Intune Suite, and the Intune admin center.
Heather_Poulsen
Updated May 13, 2025
111 Comments
- MP_35Brass ContributorChanging the enrolled by user is also a pain point on Windows side for device compliance, once the first user to login leaves the company the device will be marked as non-compliant and MS support as said "enrolled by user" is a constant and cannot be changed, meaning we might have to reprovision devices unnecessarily, is there a way to handle this?
- RichP1930Brass ContributorFor security/compliance reason you probably would want to wipe the device before handing it to a new employee and go thru a OOBE process.
- Jason_Sandys
Microsoft
Hi Michael Perez. This is an area of interest and internal investigation right now so I don't have an explicit answer for you but rather a question: why wouldn't you just Autopilot Reset (or fully reset) these devices?- MP_35Brass ContributorFor example, shared environment devices (labs for us internally) where the device lives beyond the original user that was used to enroll it.
- ameen_beCopper ContributorApplication installation Approval system is going to added to the upcoming intune version?
- RichP1930Brass Contributoryou can use Apps in intune and company portal to package apps and distribute them to a user. there is also EPM, Endpoint Privilege Management that allows you to do that
- ameen_beCopper ContributorThat is not relevant my question.
- Jason_Sandys
Microsoft
We have nothing to share at this time except that this is a request we've heard many times previously and have aspirations to provide some functionality that should meet requirements around user app requests and their subsequent approvals.
- ITsVeritasCopper ContributorHas there been any consideration for adding Autopatch to the educational license SKUs? I've been working on moving workloads from ConfigMgr to Intune and reporting within WUfB seems limited in comparison to what's available with Autopatch.
- EvgeniYordanovCopper ContributorThe preprovisioning process needs to be improved and revised. Example when a device is not delivered imidiately to the user after preprovision, after the user part is completed the device sync to intune is not in the "new device" state so it syncs every 5 min then every 15 and so on and this is causing a delay for the device to get in a fully ready state.
- MP_35Brass ContributorWill functionality be added to be able to run actions (like remote actions such as running a proactive remediation) against Entra groups similar to how you could right click a collection and initiate actions?
- MP_35Brass ContributorThese are usually Dynamic device Entra groups that various items (scripts, apps, proactive remediations, config profiles) can be assigned to
- David_SwensonBronze ContributorWe have an ongoing challenge with a lot of our MSP customers renewing Apple MDM certificates. Can we get this to never expire and/or have a built-in alert system to tell the Intune Admin when the Apple Push Cert needs to be refreshed? This results in Apple devices being disconnected from Intune.
- RichP1930Brass Contributoryou should be getting a notification, make sure you have a valid email linked to it. Cert should expire that's how you maintain validity usually it's one year for apple you can set a reminder too in your calendar
- Jason_Sandys
Microsoft
Hi David Swenson. This is not something that Microsoft controls. You need to make this request to Apple and the cert is something they control and dictate the use of. From memory, there is a message in the Intune console when your cert gets close to expiring and Apple sends an e-mail alert as well to the account that acquired the cert.- David_SwensonBronze ContributorUnderstood but there is an opportunity here for Intune to take some ownership of this process by looking at the expiration date and sending an alert to the Defender and or Purview Incidents. This will also be needed in Lighthouse.
- VaishnavK1993Brass ContributorEPM Support Approved Elevation Policy Toast notifications for users (Only Approved Requests) are not working as expected. Toast notifications are not visible most of the time.
- Jason_Sandys
Microsoft
Please contact Microsoft Support for help with this and bug related issues.
- rrenstromBrass ContributorThe inability to change the Primary User (aka licensed user) for Mac devices is a pain point for our organization (this is supported for Windows devices). Over the lifecycle of a device, users come and go, and we currently need to retire and re-enroll the device for a new user, which leads to the device being unmanaged until it's re-enrolled by the user. This is a cumbersome workflow that could be avoided by allowing the Primary User to be changed in the Intune console. We also don't want to erase the device and start over.
- DamienC1295Tin ContributorWhy Bitlocker recovery keys are NOT saved to Entra ID randomly (around 3 out of 10 machines) ? Several of my customers have this issue? Is it a known issue?
- Jason_Sandys
Microsoft
Hi Damien Chavaz. Please open a support case for this as it isn't directly specific to Intune but is instead functionality of Windows itself. Lack of connectivity is the typical reason but without digging into the logs and the scenario itself, which is best done by support, not much can truly be said.- DamienC1295Tin ContributorI will do that. Thanks Jason
- Heather_Poulsen
Community Manager
Any questions about -- or feedback on -- Microsoft Cloud PKI? Bill is ready for them!