InTune and Group Policy Gaps

%3CLINGO-SUB%20id%3D%22lingo-sub-1812004%22%20slang%3D%22en-US%22%3EInTune%20and%20Group%20Policy%20Gaps%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1812004%22%20slang%3D%22en-US%22%3E%3CP%3EGuys%2C%20looking%20at%20using%20InTune%20to%20manage%20remote%20windows%2010%20laptops.%20Currently%20our%20fleet%20in%20on-premise%20is%20managed%20for%20configuration%20using%3A%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CUL%3E%3CLI%3EGroup%20Policy%3C%2FLI%3E%3CLI%3EGroup%20Policy%20Preferences%3C%2FLI%3E%3C%2FUL%3E%3CP%3EIn%20cloud%20we%20have%20M365%20E5%20licenses.%20I%20am%20wondering%20how%20I%20can%20translate%20the%20GPO%2FGPP%20into%20InTune%20or%20if%20thats%20even%20possible%3F%20We%20do%20things%20like%20use%20the%20CIS%20GPO%20bundles.%20These%20are%20a%20mixture%20of%20GPO%20admin%20templates%20and%20secpol%20settings%20etc.%20Can%20these%20all%20be%20mapped%20into%20InTune%3F%20Also%20we%20configure%20Office%20apps%20etc.%20via%20GPO.%20Again%2C%20can%20these%20be%20mapped%3F%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EFinally%20I%20wonder%20do%20we%20need%20to%20use%20a%20mix%20of%20Intune%2FSCCM%2FEndpoint%20Manager%20and%20Always-On-VPN%20to%20achieve%20the%20same.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-1812004%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EIntune%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EMobile%20Device%20Management%20(MDM)%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3ESoftware%20Management%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1814805%22%20slang%3D%22en-US%22%3ERe%3A%20InTune%20and%20Group%20Policy%20Gaps%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1814805%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F534442%22%20target%3D%22_blank%22%3E%40shockotechcom%3C%2FA%3E%26nbsp%3BPlease%20check%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fmem%2Fintune%2Fconfiguration%2Fgroup-policy-analytics%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%20noopener%20noreferrer%22%3Ehttps%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fmem%2Fintune%2Fconfiguration%2Fgroup-policy-analytics%3C%2FA%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E
Contributor

Guys, looking at using InTune to manage remote windows 10 laptops. Currently our fleet in on-premise is managed for configuration using:

 

  • Group Policy
  • Group Policy Preferences

In cloud we have M365 E5 licenses. I am wondering how I can translate the GPO/GPP into InTune or if thats even possible? We do things like use the CIS GPO bundles. These are a mixture of GPO admin templates and secpol settings etc. Can these all be mapped into InTune? Also we configure Office apps etc. via GPO. Again, can these be mapped?

 

Finally I wonder do we need to use a mix of Intune/SCCM/Endpoint Manager and Always-On-VPN to achieve the same.

 

 

1 Reply