intune support
4 TopicsOMA-URI Lockscreen
Recently our Organization started to migrate our client infrastructure to Microsoft Intune. Windows 10 OMA-URI Lockscreen Timeout: To personalize a timer of inactivity to lock Windows 10 you will have to create a custom device configuration profile with an OMA-URI path. I will now explain you which settings you have to set to get it working: How-to The OMA-URI Path is: To define a time of inactivity create the Data type Integer. Use your preferenced amount in seconds. (for exampe: 900 for 15 minutes.) Take a look to the image attachment for exact configuration. Now assign this device configuration profile to your device group. Make sure you also sync it to the client from the web portal of Intune, but also on the client in the company portal. Perfect, the assigned devices will now lock after a user inactivity time which you defined.9.2KViews1like2CommentsIntune Windows 10 Security Baseline IE Settings
We have deployed the Intune Windows 10 Security Baseline, which includes the default IE Settings. However, via GPO we have published intranet sites to the intranet security zone via... GPO setting \User Configuration\Preferences\Windows Settings\Registry\IE Settings, which creates registry entries at ...HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap and we also allow our users to add sites to the zones as they deem necessary. This works as expected and has for many years.... However, machines that are enrolled in the Intune Windows 10 Security Baseline have all internet explorer security settings blocked including adding sites... It appears the setting in the baseline "Internet Explorer users adding sites: Disabled" does not function. I have changed this to "Not Configured" and "Enabled" with no change.. the add sites box is greyed out along with all IE Security options... Changing the setting "Internet Explorer security zones use only machine settings" to disabled does allow the sites published via GPO to show and be effective.... We are looking to publish specific intranet sites along with a few internet sites while retaining the ability of our users to add custom sites.... Any Thoughts/suggestions...Solved12KViews0likes7CommentsIntune Password Expiration -2016281112 (Remediation failed)
We have Intune setup with an Hybrid AD (onpremise DC synced with Azure). About 50% of our devices show as error for password expiration. They are all on the same domain with the same GPOS internally that expire passwords every 90 days. Intune device configuration policy matches that with 90 days. Password expiration (days) -2016281112 (Remediation failed) ERROR CODE 0x87d1fde8 Our CSP was stumped.24KViews2likes4Comments