May 13 2020
06:07 AM
- last edited on
Apr 08 2022
10:26 AM
by
TechCommunityAP
May 13 2020
06:07 AM
- last edited on
Apr 08 2022
10:26 AM
by
TechCommunityAP
We manage multiple tenants, and we would like to have the intune device compliance status from all tenants in a single workbook, is this possible?
We currently gather eventlogs from client devices to a single log analytics workspace, but we would like to see the compliance state for all devices aswell
May 13 2020 10:42 AM
Have you looked at https://techcommunity.microsoft.com/t5/device-management-in-microsoft/microsoft-intune-and-azure-log...
AzureActivity
| summarize count() by TenantId , _ResourceId, ResourceId
Many tables have the TenantId and resourceID columns, I don't have any example intune ones to look at.
May 14 2020 01:06 AM
@CliveWatson not sure how this can help me tho, as i cant forward intune logs to our tenants log analytics workspace, in the diagnostic settings i am only able to select a workspace within the customers tenant. i would need to be able to pull compliance data from another tenant, in to our workspace or query the data from our tenants workbook
May 14 2020 01:58 AM
The use of tenant isn't clear to me.
1. Do you have just a single central workspace?
2. Does each client have their own workspace:
A Workbook can get data from any Subscription you have access to, and any you have access to via Lighthouse (if they are in a separate AAD / tenant).
https://docs.microsoft.com/en-gb/azure/lighthouse/concepts/azure-delegated-resource-management
Are you Tenant A in this diagram, talking to Tenant B & C? https://docs.microsoft.com/en-gb/azure/lighthouse/concepts/enterprise#tenant-management-architecture
May 14 2020 02:22 AM
@CliveWatson Yes i would be in tenant A in this case, my user can access/manage their intune blade, but only global admin for each tenant has a subsription, there is no log analytics workspace in any of the customers tenants. I have too look into "delegate resources management"