SOLVED

Assigning Endpoint Policy to Windows 365 Business

%3CLINGO-SUB%20id%3D%22lingo-sub-2645267%22%20slang%3D%22en-US%22%3EAssigning%20Endpoint%20Policy%20to%20Windows%20365%20Business%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2645267%22%20slang%3D%22en-US%22%3E%3CP%3EHi%2C%20is%20it%20possible%20to%20assign%20Endpoint%20app%20configuration%20and%20compliance%20policy%20to%20Windows%20365%20Business%3F%20We%20have%20policies%20assigned%20to%20users%20but%20when%20we%20check%20the%20device%2C%20those%20policies%20are%20not%20assigned%2Fapplied%20and%20just%20showing%20No%20Data.%26nbsp%3B%3C%2FP%3E%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20image-alt%3D%22jblanzaderas_0-1628855650150.png%22%20style%3D%22width%3A%20400px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F303047i9FBC03B319BA8CDA%2Fimage-size%2Fmedium%3Fv%3Dv2%26amp%3Bpx%3D400%22%20role%3D%22button%22%20title%3D%22jblanzaderas_0-1628855650150.png%22%20alt%3D%22jblanzaderas_0-1628855650150.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-2645267%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3Ebusiness%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2646195%22%20slang%3D%22en-US%22%3ERe%3A%20Assigning%20Endpoint%20Policy%20to%20Windows%20365%20Business%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2646195%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F918764%22%20target%3D%22_blank%22%3E%40jblanzaderas%3C%2FA%3E%26nbsp%3B-%20Yes%2C%20you%20can%20apply%20Intune%20policies%2C%20like%20app%20configurations.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EIf%20the%20policy%20is%20assigned%20to%20the%20user%2C%20the%20user%20must%20logon%20to%20the%20device%20first%20in%20order%20for%20Endpoint%20Manager%20to%20complete%20the%20user%2Fdevice%20mapping.%20After%20that%2C%20Endpoint%20Manager%20recognizes%20the%20user%20(and%20has%20the%20logged%20on%20user's%20token)%20to%20evaluate%20and%20send%20the%20correct%20policies.%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2646701%22%20slang%3D%22en-US%22%3ERe%3A%20Assigning%20Endpoint%20Policy%20to%20Windows%20365%20Business%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2646701%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F918764%22%20target%3D%22_blank%22%3E%40jblanzaderas%3C%2FA%3E%26nbsp%3B%3A%20Can%20you%20confirm%20is%20the%20user%20has%20logged%20in%20yet%3F%20As%20long%20as%20the%20user%20has%20logged%20in%20and%20has%20logged%20into%20any%20of%20the%20Microsoft%20365%20apps%2C%20the%20device%20should%20start%20receiving%20policies%20on%20next%20Intune%20device%20check-in.%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2649640%22%20slang%3D%22en-US%22%3ERe%3A%20Assigning%20Endpoint%20Policy%20to%20Windows%20365%20Business%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2649640%22%20slang%3D%22en-US%22%3Efigured%20it%20out!%20By%20default%2C%20no%20Primary%20user%20was%20assigned%20to%20the%20Business%20CloudPC%20even%20I%20was%20able%20to%20log%20in%20successfully.%20So%20after%20assigning%20the%20user%20the%20policies%20were%20all%20applied%20to%20the%20CloudPC.%3C%2FLINGO-BODY%3E
Occasional Contributor

Hi, is it possible to assign Endpoint app configuration and compliance policy to Windows 365 Business? We have policies assigned to users but when we check the device, those policies are not assigned/applied and just showing No Data. 

jblanzaderas_0-1628855650150.png

 

5 Replies

@jblanzaderas - Yes, you can apply Intune policies, like app configurations.

 

If the policy is assigned to the user, the user must logon to the device first in order for Endpoint Manager to complete the user/device mapping. After that, Endpoint Manager recognizes the user (and has the logged on user's token) to evaluate and send the correct policies.

@Christian_Montoya , thanks! But no data is showing/applied when we check the device. How can we confirm that the policies are really applied and assigned to it?

jblanzaderas_0-1628875774968.png

 

@jblanzaderas : Can you confirm is the user has logged in yet? As long as the user has logged in and has logged into any of the Microsoft 365 apps, the device should start receiving policies on next Intune device check-in.

best response confirmed by Christian_Montoya (Microsoft)
Solution
figured it out! By default, no Primary user was assigned to the Business CloudPC even I was able to log in successfully. So after assigning the user the policies were all applied to the CloudPC.

@jblanzaderas - Thanks for the follow-up, glad you got it working! I'll work with the team to see where we can add this in our Windows 365 Business documentation.