Intune MDM
20 TopicsMDM Terms of Use URL ... What is correct URL, or is it assumed a business sets up their own?
What is the URL for the Intune MDM parameter MDM-Terms-of-Use-URL? The default lists this as https://portal.manage.microsoft.com/TermsofUse.aspx, which produces message "MDM Terms of use endpoint is not properly configured", when attempting to sign onto a brand new device an Azure AD ID. Is it expected that each business creates their own? I tried putting in a generic web site and it did not work.Solved44KViews0likes4CommentsIntune Windows 10 Security Baseline IE Settings
We have deployed the Intune Windows 10 Security Baseline, which includes the default IE Settings. However, via GPO we have published intranet sites to the intranet security zone via... GPO setting \User Configuration\Preferences\Windows Settings\Registry\IE Settings, which creates registry entries at ...HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap and we also allow our users to add sites to the zones as they deem necessary. This works as expected and has for many years.... However, machines that are enrolled in the Intune Windows 10 Security Baseline have all internet explorer security settings blocked including adding sites... It appears the setting in the baseline "Internet Explorer users adding sites: Disabled" does not function. I have changed this to "Not Configured" and "Enabled" with no change.. the add sites box is greyed out along with all IE Security options... Changing the setting "Internet Explorer security zones use only machine settings" to disabled does allow the sites published via GPO to show and be effective.... We are looking to publish specific intranet sites along with a few internet sites while retaining the ability of our users to add custom sites.... Any Thoughts/suggestions...Solved12KViews0likes7CommentsMDM Security Baseline vs Intune Profile
Hi all, I am testing currently the 2 profiles in the Security Baselines in default configuration. As they are now checked against the endpoint there is one Error in the Per-settings status: Type of system scan to perform Problem is now - I cannot see anything configured in the MDM Security Baseline for May 2019 the setting itself in the Intune profile is configured. Any idea? Best regards Miguel6.2KViews2likes5CommentsPhone Directory
Hello all, My business is looking at moving away from our current BT subscription. We currently use the BT One Phone Portal as a directory for our users. Is there a way to upload these numbers into Intune and for Intune to be kept up to date date, i.e. syncing so that if a number is updated on Intune on the back office, this will reflect on the users' device? Many Thanks in advance for any help Nathan4.9KViews0likes4CommentsSomeone else is still using this PC. If you shut down now, they could loss unsaved work
Hi All, After testing connecting devices to our Azure AD network using MS Intune and Azure Conditional Access we are having issues with the devices. We can successfully connect to the Azure AD network, but when the device user restarts or shuts down their device they get a "Someone else is still using this PC. If you shut down now, they could loss unsaved work" warning. Even when we have completely disconnect the device from the Azure AD network they still get the warning. We are currently testing Intune and Azure Conditional Access. What we can not understand is why we would get this warning even after the device has disconnected from the Azure AD network. Has anyone on the beautiful planet called Earth, any idea why this is happening? I hope you can help CourtneySolved4.8KViews0likes1CommentAndroid 15 - CredentialProviderPolicy not surfaced by Intune
I have been having an issue with Android 15 devices. We use Authenticator as our password autofill provider. As soon as a device is updated from Android 14 to Android 15, the password autofill provider is no longer set and the setting to change it is 'blocked by work policy.' I have already tried removing all policies that apply to the devices (device config and device compliance policies) and factory resetting them. Simply having them enrolled as corporate owned fully managed devices causes this to happen. I raised the issue in the Android Enterprise community blog. A link to that is included below. Someone on that thread found that there is a policy in Android 14/15 called the credentialproviderpolicy. When that policy is blocked or unconfigured, this behavior happens. I cannot find anywhere in Intune where I can set this policy. It seems that it is allowed by default when managing Android 14 with Intune, but not set or blocked when the device switches to Android 15. Is there any way to specifically set a policy that is not reflected in the Intune UI? This is a blocker for being able to move more phones to Android 15. Link to Android Enterprise thread: https://www.androidenterprise.community/t5/admin-discussions/android-15-cannot-set-default-password-app/m-p/8827#M2105 Thanks, Tom2.5KViews8likes10CommentsVPP Apps Not Installing via Intune – Error 0x87D127DB Despite Valid Configuration
Hi everyone, We’re currently using Microsoft Intune in combination with Apple Business Manager (ABM) to provision iPhones in our organization. Our setup has worked reliably until recently: in April/May, we successfully deployed 50 iPhones without any issues. However, for the past 10 days, we’ve encountered a persistent issue: VPP apps are no longer installing automatically on newly enrolled devices. ✅ What’s working: Device registration in ABM Syncing devices from ABM to Intune Device renaming, resetting, and syncing via Intune Uninstall Apps using uninstall group of the deployment configuration on existing devices) Disabling devices in ABM and syncing changes to Intune Purchasing new apps in ABM and syncing them to Intune App license counts (total, used, available) are correctly shown in Intune ❌ What’s not working: VPP apps are not being installed. Only one or two icons appear on the home screen with a cloud symbol. Tapping them prompts a message that the app must be downloaded from the App Store. Intune consistently shows the following error: “App installation failed. 0x87D127DB (Unknown)” Occasionally, a message appears stating that VPP licenses could not be found, although all apps have sufficient licenses and Intune reflects this correctly. Troubleshooting steps taken: Devices have been reset multiple times New apps were purchased and assigned with a minimal configuration (one required group) All certificates (MDM push, VPP token, enrollment token, Apple SCIM token) are valid Apple Business Support confirms their services are operational Microsoft Support has not provided a resolution and suspects the issue lies with Apple Apple, in turn, refers us back to Microsoft At this point, we’re stuck between both vendors and are hoping someone in the community has encountered this issue or found a workaround. Has anyone else experienced this behavior or found a solution for the 0x87D127DB error with VPP apps in Intune? Thanks in advance for your help!Solved1.5KViews0likes7CommentsThe Manged Home Screen app no longer provides access to installed apps
We have a kiosk profile which uses the Managed Home Screen app. We deploy 3 apps to the device upon enrollment and they were previously visible on the home screen. A week ago, the problem arose where the apps are no longer visible on the home screen. When accessing the diagnostic screen (tapping the back button 15 times) I can see that the apps are actually installed on the device. Performing a re-sync does not alleviate the problem. Exiting Kiosk mode is also not possible as the option to provide a pin is not available. The device is visible in the portal. What other troubleshooting steps can I take?1.3KViews0likes1Comment