Event details
During Group Policy to Intune migration, how should we think about policy precedence and configuration profile design?
In Group Policy, we had link order, inheritance, enforcement, and policy priority, so if the same setting existed in multiple GPOs there was a predictable winning policy. In Intune, when the same setting is configured in multiple profiles, it appears to report a conflict instead of applying a clear priority model.
What is Microsoft’s recommended approach for structuring Intune configuration profiles to avoid these conflicts? For example, should we organize profiles by security baseline, setting category, device role, user group, or application/workload? And if different teams need to manage overlapping settings, what design pattern is recommended for ownership, exceptions, and conflict prevention?