Microsoft

Microsoft Intune Feedback

Suggestion box powered by UserVoice

Ideas

What features would you like to see?

All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Microsoft Intune, though we can’t promise to reply to all posts.

Standard Disclaimer – our lawyers made us put this here ;-) We have partnered with UserVoice, a third-party service, so you can give us feedback. Please note that the Microsoft Intune feedback site is moderated and is a voluntary participation-based project. Please send only feature suggestions and ideas to improve Microsoft Intune. Do not send any novel or patentable ideas, copyrighted materials, samples or demos. Your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy, including the license terms.

How can we improve Microsoft Intune

You've used all your votes and won't be able to post a new idea, but you can still search and comment on existing ideas.

There are two ways to get more votes:

  • When an admin closes an idea you've voted on, you'll get your votes back from that idea.
  • You can remove your votes from an open idea you support.
  • To see ideas you have already voted on, select the "My feedback" filter and select "My open ideas".
(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can support and comment on it.

If it doesn't exist, you can post your idea so others can support it.

Enter your idea and we'll search to see if someone has already suggested it.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. provide better guides and best practices

    I have spent days getting my head around how to add devices using the new (non-silverlight) interface. Documentation for the nuts and bolts, step by step real world use of the product truly sucks. Sorry. Even the basic procedure for adding devices and users is a trial and error experience at best. Do we use the CompanyPortal app or the website? Which user should enroll the device in Azure AD? Which user should do the MDM? To add insult injury, virtually every YouTube, Lynda.com and Pluralsight video online is for the old Silverlight interface.

    It's a great product. Now if…

    11 votes
    Vote
    Sign in
    Check!
    (thinking…)
    Reset
    or sign in with
    • facebook
    • google
      Password icon
      Signed in as (Sign out)
      You have left! (?) (thinking…)
      1 comment  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
    • CSP Power XML Examples

      Currently the Microsoft Article https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-power does not provide examples of the Power Options aka templates for end customer use. There are reference to generic examples via the link: https://docs.microsoft.com/en-us/windows/client-management/mdm/understanding-admx-backed-policies but nothing that shows clear syntax and proper syntax for the Power options. Please adjust the documentation to include these if possible.

      9 votes
      Vote
      Sign in
      Check!
      (thinking…)
      Reset
      or sign in with
      • facebook
      • google
        Password icon
        Signed in as (Sign out)
        You have left! (?) (thinking…)
        0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
      • Email access is delayed for 1-3 hours when enrolling in Company Portal app and conditional access in Intune.

        Setup:
        - Conditional Access with Exchange On Premise
        - Default Access rule set to "Block"
        - Configuration Policy that configures the email client on iOS/Android

        After enrollment, it takes 1 - 3 hours for the device to become 'unblocked / access granted' in Exchange.
        This makes staging of the devices very difficult as we need the username/pass during enrollment & we can only start showing the email functionality after several hours.

        This is not mentioned in the documentation (as a matter of fact, the documentation states that it should be unblocked within 2 minutes). MS Support confirmed this is indeed…

        6 votes
        Vote
        Sign in
        Check!
        (thinking…)
        Reset
        or sign in with
        • facebook
        • google
          Password icon
          Signed in as (Sign out)
          You have left! (?) (thinking…)
          0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
          noted  ·  Nbigman MSFT responded

          This suggestion has been passed along to the documentation team.

        • Clarity on how to use/handle Compliance vs Configuration vs Hello for Business settings

          Today, in Intune standalone, there are multiple locations you can configure many items for Windows 10. One such example is password.

          If we look at password, you can set password restrictions or requirements in the compliance policy, and these are enforced. But you can also specify these as a configuration profile. There's also similar settings in Windows Hello for Business.

          As an admin, I'm not sure which take priority, or how to best utilise these settings in harmony.

          Another example is Bitlocker - there's a compliance policy, and also configuration profile. On this occasion, compliance doesn't actually enforce, it just…

          5 votes
          Vote
          Sign in
          Check!
          (thinking…)
          Reset
          or sign in with
          • facebook
          • google
            Password icon
            Signed in as (Sign out)
            You have left! (?) (thinking…)
            0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
          • precedence and priority for conditional access controls. When compliance, MFA, and Hybrid Azure AD join are all checked – how does Intune de

            One of my questions, that I’ve never been able to get answered, it’s not in the Microsoft documentation, is the question of precedence and priority for conditional access controls. When compliance, MFA, and Hybrid Azure AD join are all checked – how does Intune determine which one is to be applied? If MFA is checked, will it always be presented to the user, or will it not be used when a device is compliant? What logic is used? Sadly the documentation is lacking for this.

            Please answer this question and help with documentation.

            4 votes
            Vote
            Sign in
            Check!
            (thinking…)
            Reset
            or sign in with
            • facebook
            • google
              Password icon
              Signed in as (Sign out)
              You have left! (?) (thinking…)
              0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
            • Trusted IP Address has Changed

              OK, so Microsoft kind of revamped the way Trusted IP Address and MFA IP Addresses work in Intune / Azure AD.

              There is Zero (0) notes on the release of this change that I can find anywhere.

              So far as I can find there is Zero (0) documentation on how this functionality works.

              Please provide updated documentation on Conditional Access Rules.
              How to add the IP Addressing.
              How the functionality of the Trusted IP Addresses tick box works and functions.

              BTW, we are having an issue with some configuration, this may be the issue!

              4 votes
              Vote
              Sign in
              Check!
              (thinking…)
              Reset
              or sign in with
              • facebook
              • google
                Password icon
                Signed in as (Sign out)
                You have left! (?) (thinking…)
                0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
              • Sample configuration policy for Android for work in mircosoft intune

                Hi Supporter,
                When we read the configuration policy of IOS i saw the sample config and follow it. But when reading the similar on Android for work i don't see the sample, could you help me sample configuration ?

                4 votes
                Vote
                Sign in
                Check!
                (thinking…)
                Reset
                or sign in with
                • facebook
                • google
                  Password icon
                  Signed in as (Sign out)
                  You have left! (?) (thinking…)
                  4 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                • explain the logic used when two conflicting policies or profiles are landing on the same Win10 device

                  I cannot currently find any documentation which explains the logic used by Intune (or what I could do to infer it) when two conflicting policies or profiles are ultimately landing on the same Windows 10 device. What determines which one wins? How is this resolved? Is there a general rule of thumb? Ultimately my goal is predictable outcomes but Intune is a bit of a black box on this topic currently so that's difficult to achieve.

                  3 votes
                  Vote
                  Sign in
                  Check!
                  (thinking…)
                  Reset
                  or sign in with
                  • facebook
                  • google
                    Password icon
                    Signed in as (Sign out)
                    You have left! (?) (thinking…)
                    0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                  • Guide on how to migrate from an existing MDM solution

                    We are looking to migrate from an established MDM solution to Intune. Intune takes a different approach to device management than most MDMs, so some guidance on how to migrate away from an established MDM solution to Intune would be helpful. I understand all MDMs are different in some ways, so a specific guide detailing how to migrate away from a particular MDM solution is not practical, but some overall guidance about how to convert policies and configurations, apps (public and in-house developed) and setting up permissions models would be a good place to start.

                    1 vote
                    Vote
                    Sign in
                    Check!
                    (thinking…)
                    Reset
                    or sign in with
                    • facebook
                    • google
                      Password icon
                      Signed in as (Sign out)
                      You have left! (?) (thinking…)
                      0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                    • doc that some features work only if you have Windows Enterprise edition

                      In documentation for Intune for device restriction policy, app store restriction, there is no information that some of the features apply only if you have Windows Enterprise edition. So you create a policy and it wont give you any information, just don't work as you expect to according to documentation.

                      1 vote
                      Vote
                      Sign in
                      Check!
                      (thinking…)
                      Reset
                      or sign in with
                      • facebook
                      • google
                        Password icon
                        Signed in as (Sign out)
                        You have left! (?) (thinking…)
                        0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                      • Provide overview about App PIN groups, SSO and SLO capabilities per app

                        We enforce App PIN via Intune MAM. Also we'd like to have Single-Sign-On and Single-Log-Off across all managed apps. There is no overview showing which app supports what.

                        Regarding the App PIN e.g. Word, Excel and PowerPoint share a common PIN but the Yammer app uses a different one. Why do we need to find that out in own tests instead of it being documented?

                        1 vote
                        Vote
                        Sign in
                        Check!
                        (thinking…)
                        Reset
                        or sign in with
                        • facebook
                        • google
                          Password icon
                          Signed in as (Sign out)
                          You have left! (?) (thinking…)
                          0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                        • AAD device enrollment restriction applied to an Intune DEM

                          We have noticed that an Intune DEM user still falls within the AAD device enrollment restriction. Is there a step missing in the instructions to add the Intune DEM into a specific group which has unlimited AAD enrollment?
                          https://docs.microsoft.com/en-us/intune-classic/deploy-use/enroll-corporate-owned-devices-with-the-device-enrollment-manager-in-microsoft-intune

                          1 vote
                          Vote
                          Sign in
                          Check!
                          (thinking…)
                          Reset
                          or sign in with
                          • facebook
                          • google
                            Password icon
                            Signed in as (Sign out)
                            You have left! (?) (thinking…)
                            0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                          • Don't see your idea?

                          Feedback and Knowledge Base