reporting
77 TopicsRegistry Inventory in Microsoft Intune: Verifying What’s on Your Devices
By: Madison Cooks, Product Manager | Microsoft Intune IT admins need a reliable way to confirm how Windows devices are configured, especially when troubleshooting, validating compliance, or investigating security posture. Policy assignment alone doesn’t always show what’s present on the device and getting registry visibility at scale has often required custom discovery or remediation scripts that take time to build, test, and maintain. With Microsoft Intune’s July (2607) release, device inventory will include Windows registry data, helping IT admins verify a device’s actual configuration, not just the policy assigned. With a new Device inventory property for registry keys, you define the keys you care about in the properties catalog, and Intune collects them for you. There’s no collection logic to build or keep running. This makes registry-based configuration checks easier to operationalize across managed Windows devices, so teams can spend less time maintaining scripts and more time acting on the data. Figure 1: Microsoft Intune device inventory profile creation screen showing the Properties picker with the Registry category selected for inventory data collection. What registry data you collect Registry data collection is configured through the existing properties catalog. For each entry, provide a registry key path and, when needed, a value name. For every targeted device, the device agent attempts collection and reports: Registry key path Value name Value type Value data Microsoft Intune device inventory profile configuration page showing registry key collection settings, including registry path, collection pattern options, and value name fields. The initial release supports the following collection patterns designed for common admin scenarios that use HKEY_LOCAL_MACHINE (HKLM) paths. Single value Specify a registry path and value name to collect one value from that path. For example, collect Secure Boot certificate servicing status from HKLM\SYSTEM\CurrentControlSet\Control\SecureBoot by using values such as UEFICA2023Status, UEFICA2023Error, or UEFICA2023ErrorEvent. All values under a path, non-recursive Specify a registry path to collect all values directly under that path. This pattern doesn't include subkeys. For example, collect values directly under a Windows Update configuration path to help validate expected settings. Same value across subkeys Specify a base registry key path and a value name to collect that value from each immediate subkey. For example, collect DHCP status across network interface subkeys under HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces. Where registry inventory data appears After collection, registry inventory data will be available in Device inventory at initial release. We’ll expand access to registry data in the coming months, including support in additional reporting and exploration experiences. Microsoft Intune Device Inventory page displaying collected Windows registry data for a device, including registry key paths, values, collection status, and timestamps. This makes registry data available alongside other inventory signals, so admins can use familiar tools to investigate configuration, validate device state, and support troubleshooting without building separate collection scripts. How admins use this You can collect registry data and view it per device in Device inventory - a verified record of each endpoint’s actual configuration and a key source of settings data on each endpoint. This helps answer questions like: Is a setting actually enabled on the device? Which app, version, or configuration is installed? Did a policy apply correctly? Why is this device behaving differently from the rest? Registry data collection in Device inventory is included with Microsoft Intune Plan 1. Collection results and limits If a registry value exists but doesn’t contain data, collection succeeds and the value appears as empty. If the registry path or value name doesn’t exist on a device, that device reports Not found for the collection result. Collection continues for all other devices, so one missing value won’t block results from devices where the value exists. Registry inventory includes safeguards to keep collection focused and manageable. Each collected registry value is capped at 6 KB, and each device can collect up to 100 registry keys. If a value or device exceeds these limits, collection skips the excess data and reports the applicable result for that device. These limits help manage data volume, maintain service performance, and reduce the risk of over-collection. Registry inventory is designed for configuration visibility and troubleshooting, not for collecting sensitive or confidential data. Built-in heuristic detection helps identify and prevent ingestion of values that may contain secrets, credentials, authentication tokens, certificates, private keys, connection strings, or other data that could grant access if exposed. If a value is flagged as potentially sensitive, it isn’t collected. Collection is limited to HKEY_LOCAL_MACHINE (HKLM) paths. This keeps inventory focused on device-level configuration and avoids user-specific registry contexts. Summary Registry inventory in Microsoft Intune helps admins collect Windows registry data in a native, declarative way. Instead of maintaining custom scripts for common inventory scenarios, admins can configure registry collection in the properties catalog and query the results through familiar Intune reporting experiences. Use registry inventory for configuration visibility and troubleshooting across managed Windows devices. As you plan your collection strategy, focus on device-level HKLM data, avoid sensitive values, and remember collection limits to keep inventory targeted and manageable. If you have any feedback or questions, leave a comment below or reach out to us on X @IntuneSuppTeam.16KViews2likes15CommentsMaking effort calculations work in Project for the Web (P4W)
Dear all, we are having a hard time with "efforts" in P4W since the system is directly calculating the hours based on the number of assigned resources and the duration of the task. This does not reflect the reality in most organizations so a manual entry of the correct effort is needed. Since this feature seems to be missing for now I'm wondering how all of you are working around this lack of flexibility right now. I came up with the following scenarios but none seems to be a great fit: Scenario 1 - Split tasks Create one tasks with the correct effort but ignore the due date and create a milestone to indicate when the task needs to be completed. Advantage: Effort would reflect correct # of hours Drawback: First task would instantly appear as running late or late Scenario 2 - Ignore efforts in P4W Create single task and only pay attention to the duration. Outsource any effort and resource management to another system. Advantage: Gantt chart view would look correct. Drawback: Requires a separate system for effort and resource management. Any PowerBI reports are still reporting nonsense. Scenario 3 - Extend P4W to outsource efforts to a custom object Use custom CDS entity to store the actual efforts. Advantage: Effort calculation would be correct and appear in the same system. Drawback: The efforts cannot be entered in the project.microsoft.com user interface Please let me know if I missed a scenario or share you best practice! Thanks, https://www.linkedin.com/in/muellersmartin/3.1KViews2likes7CommentsHelp with Connect to a SharePoint List (Power Query)
Hi all, When trying to connecting to an online SharePoint list in excel it gives me the option to use Anonymous, Windows or Organizational account. I mistakenly chose Anonymous and got this error: Unable to Connect - We encountered an error while trying to connect. Details: "Access to the resource is forbidden." When I try to go back to connect using Organisational account, it skips that option and goes straight to the above error.Solved3.8KViews1like1CommentDetailed PSTN user reporting
With remote working being the norm at the present , we have adopted Microsoft Teams to handle our incoming / external customer calls, is there a recognise way now to report on the individual stats of a user or a group of users in the same team? for Example , Total incoming calls for user/team Total external calls for user/team Calls taken in the Day/Week/Month/Year for user/Team Average duration of a call in the Day/Week/Month/Year for user / Team Total duration of a calls in the Day/Week/Month/Year for user / Team Can anyone else relate to this question? thanks Chris4.5KViews1like1Comment