Microsoft

Microsoft Endpoint Manager Intune Feedback

Suggestion box powered by UserVoice

Ideas

What features would you like to see?

All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Microsoft Endpoint Manager Intune, though we can’t promise to reply to all posts.

Standard Disclaimer – our lawyers made us put this here ;-) We have partnered with UserVoice, a third-party service, so you can give us feedback. Please note that the Intune feedback site is moderated and is a voluntary participation-based project. Please send only feature suggestions and ideas to improve Intune. Do not send any novel or patentable ideas, copyrighted materials, samples or demos. Your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy, including the license terms.


  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. BYOD - Changing Intune Device Enrollment Limit to 1 for only a few users in Intune while allowing other users to enroll upto 5 devices.

    We know by default in the intune tenant we can define “Mobile Device Enrollment Rules” that can allow up to a Maximum of 5 devices per user to be enrolled into intune. So in BYOD scenario the users are able to enroll up to 5 devices into Intune.

    So in this BYOD scenario, sometimes we want to allow only certain users or User group to be able to enroll their devices but just 1 device into intune not 5 devices. While other users should be able to enroll up to 5 devices as configured under “Mobile Device Enrollment Rules” in…

    113 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    8 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  2. Selective Wipe for Azure AD Joined devices

    Please add the option to do a selective wipe on Azure AD Joined/Workplace joined devices.

    Azure AD Join and MDM auto enrollment are enabled with Intune and Azure AD Premium. When a Windows 10 Mobile is started for the first time (OOBE) it is possible to “Sign in with a work account” to join Azure AD and auto enroll in Intune. (https://technet.microsoft.com/nl-nl/itpro/windows/manage/join-windows-10-mobile-to-azure-active-directory#how-to-join-windows-10-mobile-to-azure-ad). When a Windows Mobile device is configured this way Single Sign On works for Mail, Calendar, Edge and the Business Store, which is great. But when the Selective Wipe option is initiated from Intune it does…

    106 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  3. URL Filtering on PCs

    URL filtering on Mobile devices , Laptops, PCs

    since Intune has endpoint protection. we would like see a URL filtering function on the PCs /laptops and Mobile devices where Intune client should be able to block or allow websites defined in the policy.

    we are able block or allow website while the devices are on local network, but when it come to laptops, it is always moving with users so we don't have the control on it.

    currently url filter function is available in TrendMicro but it has limitations.

    Please consider this URL filter function for the future

    96 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  4. Alert Email notification user unenroll his device

    Provide ability to create email alert when a user unenroll his device from Intune. This will allow admins to be notified and then contact the user to verify why happened.

    94 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    7 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  5. Provide Intune MDM integration with Cisco AMP cloud service

    Provide Intune MDM integration with Cisco AMP cloud service. Currently Cisco supports Meraki, AirWatch and MobileIron. Our company sank good support money into two solutions and lack of simple API integration between two cloud products is very troubling.

    84 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    6 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  6. Create a folder on the mobile device for company apps

    I would like to be able to create a folder, then install all my company managed apps into that folder. Keeping all company apps in the same location makes it easier for the user to find and easier for the help desk to support.

    82 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  7. Easily Associate Users with Devices

    With Active Directory users syncing into Intune, allow the ability to manually associate users with the devices in the Intune interface. The 'Associated User' section should be a field where I can search for any user in my AD and associate them with the device. I'm aware of the other methods to associate users to devices.

    75 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  8. Intune side loading of apps to Android for Work profile for development use

    With the device admin deprecation ensuring the adaptation of Android for Work the requirement to test applications within their Android for Work environment will become ever greater. Currently the only way to deploy an app to the AfW profile on Intune is by deploying via the Play Store. When developing an application it is not practical to do this for every time you wish to test your app. For testing and developing apps that make use of conditional access and security related features of Intune's protection it is important to have the ability to side load apps via USB to…

    71 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  9. Corporate vs Personal Device Policies / segregation

    Corporate vs Personal Device Policies / segregation - Today you can create policies for Corporate Owned and Personal Owned Devices. But if a user is part of both groups receiving Corporate Owned and Personal Owned Device policies, that user will receive most restrictive policies on his personal device as well. There needs to be a way to do this more effectively where a personal owned device should not be receiving corporate policies.

    71 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    3 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  10. There should be REST or SOAP API with Service Now Integration(intunes with Service Now Integration)

    Hi Team,

    As per me there should be REST or SOAP API in intunes with Service Now Integration.

    Now a days its the time of automation.

    Lot of things can be performed from service now itself but for that there should be predefined functions in intunes.

    Also in intunes there is on premise feature but it can be accomplished with SCCM only,as per me inbuilt feature should be there.

    Also Geo fencing feature is missing in intunes.

    Lot of things are there which I can suggest to microsoft.

    Thanks & Regards
    Sagar

    69 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    4 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  11. Please allow OPPO devices to be managed by Intune.

    Please allow OPPO devices to be managed by Intune.

    The below article tells that OPPO devices are not supported.
    https://docs.microsoft.com/en-us/intune-user-help/your-device-appears-encrypted-but-cp-says-otherwise-android

    Please consider these devices at the earliest.

    Thanks,.

    68 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    3 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  12. In advance e-mail notification of upcoming password expiration for MDM

    Intune MDM needs the ability to send e-mail notifications to users when a password/PIN is going to expire within X number of days. Admin should be able to set the number of days that e-mails should be sent; 14, 10, 5, etc. days. in ADVANCE of expiration.

    65 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  13. ability to hide Device Categories

    I would like the ability to hide Device Categories. I use them with dynamic groups in order to provision devices. I have a standard group to 'build' a Kiosk device because Apple permissions force me install apps then give them permissions (such as camera). I then switch the category to something that has a KIOSK policy applied.

    The issue is I really do not want the users seeing 30 categories when they enroll their devices.

    Please add a check box that 'hides' the category during enrollment, but allows an admin to change to that category to get policies.

    Yes, you…

    62 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    5 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  14. Custom message when locking devices

    displaying a custom message on screen when a device is locked due to it being lost/stolen. This would apply to all devices similar to how remote lock works on iCloud, FindMyPhone for android and Samsung devices
    i.e. "This device belongs to X company, please call +01 xxxx-*** to return device"

    61 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  15. Intune email alert to admins on user device enrollment

    Provide ability to create email alert to admins when a user enrolls a new device in Intune. This will allow admins to be notified and then make sure the device has been added to the proper Intune policies. It will also allow for security tracking on new devices that are being added to the environment for accessing Office 365.

    59 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    3 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →

    Changing status to Noted since Heena is a PM on the team. Also, bumping her question so it will go out to supporters:

    Can you please elaborate on how Admins plan to target policies to these devices? Will they do user targeting or device targeting? If user targeting, can they target these policies to the user group prior to any devices being enrolled?

  16. Enable intune to delete outlook profile from windows desktops and mac

    Currently intune can’t delete outlook profile on windows desktops and mac (I have already raised a ticket and confirmed [Ticket #:12377207]). When we use retire option it just don't delete cashed outlook profile from pc. (windows or mac)
    When it comes to mobile platforms such as android and ios, it just works fine as it should, and deletes the outlook profile very smoothly by intune using retire option.
    “Retire option” claims the following, yet looks somewhat misleading .
    "Are you sure you want to remove company data on this device? This will only remove company data managed by Intune. The…

    59 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  17. Provide the possibility during installation to give the Device a predefineded hostname

    In an Enterprise Devices do follow a Special naming convention. Currently it is not possible to rename the devices or give the devices a predefined Company hostname during installtion. It would be good if at least an Input field would be available to give the device a hostname. Or if the Admins could predefine a hostname during the enrollment process of the Hardware ID.

    Thank you in advance

    58 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    4 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  18. Enrollment Quarantine

    Create a Quarantine for Enrolment, where an Admin can approve or deny enrollment for a device.

    55 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    3 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  19. Dynamic Device group based on installed application

    We have a situation where we allow users to install apps from the appstore on their corporate device but a situation came up where a lot of heavy data usage apps are causing large bills.

    We want the option to be able to deploy app restriction policies and take control of an unmanaged app without having to deploy it to all users.

    Being able to make a dynamic device group based on a specific discovered app would allow us to target only those with the application installed for the restriction policy rather than having to deploy the app to everyone…

    55 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    4 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  20. Mix User Groups assignment and Device Groups exclusion

    We need a solution to configure Intune policies and software deployment for a large customer who has users with registered AND AAD, who have connected W10 devices that we both like to manage with Intune.

    We want to apply (mainly security related) policies to the registered devices (BYOD) and policies and software to the AAD connected devices (corporate devices). Now that we apply the configuration to user groups, how can we say that we keep the software packages away from the registered devices and apply them to the connected devices for the same users?

    We tried to apply the configuration…

    54 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    3 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Feedback and Knowledge Base