Microsoft

Microsoft Endpoint Manager Intune Feedback

Suggestion box powered by UserVoice

Ideas

What features would you like to see?

All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Microsoft Endpoint Manager Intune, though we can’t promise to reply to all posts.

Standard Disclaimer – our lawyers made us put this here ;-) We have partnered with UserVoice, a third-party service, so you can give us feedback. Please note that the Intune feedback site is moderated and is a voluntary participation-based project. Please send only feature suggestions and ideas to improve Intune. Do not send any novel or patentable ideas, copyrighted materials, samples or demos. Your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy, including the license terms.


  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Enable full management of the Windows Firewall

    Enable full management if outgoing as well as incoming firewall rules in Intune Device Configuration Profiles.
    Enabling the management of outgoing firewall rules, and providing the ability add individual exceptions would help prevent data leakage in corporate environments.

    19 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  2. Android Enterprise Device Wipe

    In a company owned device scenario we would like to manage the devices with the wipe function (they are company owned) and not require a user to log in to their google account to install applications that we deploy. Sadly as you know the Android for Work Enrollment option does not provide the option to wipe devices and the Android enrolment for personal use requires a google account to deploy software and while we could use a generic google account for this we do not want people to have access on the device to that account. Android in Kiosk Enrolment…

    19 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  3. Privileges missing in UserRights CSP

    You already offer to configure some privileges through the Policy CSP : https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-userrights.

    But some of them are missing, like :

    •Allow logon Through Terminal Services
    •Deny logon as a batch job
    •Log on as a batch job
    •Log on as a service
    •Remove computer from docking station
    •Replace a process level token
    •Shut down the system

    Could you please add them to Intune?

    19 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  4. Add Location field to Devices

    In the device management it would be great if a location field / column could be added which we could use to add in the office / location of the Smartphone Device.
    This will make it easier to find out how many devices are enrolled into Intune for a specific location.

    18 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  5. Add the possibility of assigning to corporate or personal devices

    It now is possible, by using groups to automaticaly fill that group with devices that have a certain ownership (corporate/personal). It would be great if that step could be eliminated and that it will be possible to just have a pull down menu per app/configuration profile/update policy/etc. where we have the possibility to assign those settings to personal or corporate devices.

    So as an addition to the possibility of adding group memberships or all users or devices.

    For example:
    Say that we have corporate and byo devices. We create 2 device configuration profiles. One for the corporate devices and one…

    17 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  6. allow device pairing with iTunes

    There is no option to allow device pairing with iTunes. This is a problem whe you have more that 500 iphone managed with apple DEP program and some of these device need to use Itunes...

    16 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    5 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  7. Force the synchronization of devices in an AAD group

    When I deploy an application to an Azure AD Group, I would like to
    Force the synchronization of every devices just with one click.
    Actually i need to synchronize each device one by one to force the sync.

    16 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  8. Show display settings in the managed home screen

    Currently the managed home screen allows the user to adjust volume settings, set bluetooth setting, and view device information. I would also like to give the device users the ability to adjust the display settings on a device.

    Features like being able to adjust the brightness of the screen, turn on and off auto brightness, set the sleep interval, and the ability to turn on and off the auto-rotation of the screen.

    We like the ability to lock down the tablets with the managed home screen, but it would be nice to give the device users the ability to adjust…

    16 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  9. Ping feature

    Insert a feature which allows you to "ping" devices from the Intune console, so you can verify if a device is reachable (e.g. for a sync).

    16 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  10. Save Administrator View Preferences

    The columns and views by default are not useful. What's even more annoying is when I change my view to something that's helpful to me, it is not preserved at next login, everything is reset to default. Considering Intune is a cloud service I would expect that Intune should be able to save my view preferences to be used wherever I may login from.

    15 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  11. Support Multiple Sites / Locations

    We need the ability to have multiple sites or locations with different configurations from enrolment restrictions and automated enrolment, all the way through to configuration profiles and applications.

    e.g. Personas - One site for Production users and another for Developers
    e.g. Locations - One site for New Zealand and another for Australia

    This would allow companies to have greater separation of environments, locations and/or persona configurations from the ground up.

    All other MDM's support this type of segregation and it allows for a much safer, simpler operating model.

    15 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  12. Upgrade Windows 10 OS Edition from Home to Pro

    First, we try to do Azure AD Join for 300 Dell Laptop's with Windows 10 Home Edition (OEM), but there is no option for same and suggested to upgrade to Pro Edition.

    Secondly, tried to do upgrade OS from Home to Pro through Intune, but no luck; and got the answer from Microsoft saying that "by design that you cannot upgrade form Home to pro edition using Intune".

    Only Device Enrollment can be done, but not Azure AD Join.

    By looking into above mentioned case study - requesting the Microsoft team to see for permanent solution to resolve the issue.

    15 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  13. Adding users to Mobile Device Management Issue - Enrollment Problems

    Hi

    We are in the process of setting up Office 365 Mobile Device Management. We've created a MDM policy, created a security group and associated this group with the newly created MDM policy. We have added about 10 users to run as a pilot test.

    There has been a number of scenarios which have occurred whilst setting end user devices up.


    1. Add the user to the security group associated against MDM policy. The user receives the enrollment email, and email stos syncing with Office 365 mailbox on device until they successfully complete the enrollment process

    This is what you expect…

    15 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    4 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  14. taskbar layout not sync

    Update the taskbar layout with the sync with intune.
    Actually, when the policy is applied, the start layout and taskbar are applied. But at first launch, not all the apps are provisoned to the device, meaning that only apps that are present on the device are shown in the start menu and the taskbar.
    Then, as the policy was applied, the part with the xml file for the start menu and taskbar are not sync again, meaning new apps are not shown in the taskbar.
    You have to modify your xml file, and upload a new one, to make it…

    14 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  15. Only Allowed Users based on AD Group, the ability to enroll in Intune

    It would be nice to be able to only allow users who are in a specific AD group (ex. Mobile-Access), to have the ability to enroll in Intune. All other users would not be allowed to enroll in Intune.

    14 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    3 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  16. Be able to do all the things that Casper, AirWatch, and other MDM, MAM solution does with Intune

    There are a lot of lack of function in Intune.


    1. Able to assign and manage a share device

    2. Hard to deploy applications

    3. Can't manage app configuration

    4. Can't build app store or is not existence

    5. Reporting is not robust

    6. Can't control all Android devices effectively without Knox

    7. Not all apps are "enlighten" apps.

    14 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  17. Unknown sources apk in Kiosk mode

    Need a way of installing unknown sources packages to a tablet that is in kiosk mode. Currently the only method is by posting the package to your own store but if someone has already used that package name it will not allow us to post it. Since we do not own that application and they HCHB does not publish it on the market we have no way of locking down devices and using their app. This works fine in other MDM solutions by simply putting in an allowance for the package name.

    14 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  18. The status after applying the StartLayout configuration policy by Windows10 is displayed as "Not applicable".

    Currently, the content of XML set by StartLayout configuration policy ( 1) is reflected immediately in Windows10 device. However, we would inform you the inappropriate behavior that the status ( 2) after applying the policy does not become "Succeeded" instead of continues to be displayed as "Not applicable" when you check from the management screen.


    • 1 Microsoft Intune> Device configuration> Profiles> Create profile> Device restrictions> Start

    • 2 Microsoft Intune> Device configuration> Profiles> Created StartLayout policy> monitor> Device status> [Deployment Status] in the item list

    In addition, we confirmed that the event is reproduced as well by applying sample XML according…

    14 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  19. Hardware Inventory for Mobile Devices Enrolled by Microsoft Intune and Configuration Manager

    At the moment the inventory we get from our more than 900 WP8 Phones is very limited.
    See also; https://technet.microsoft.com/en-us/library/dn469411.aspx

    Please implement a feature that we can see the following:

    Wi-Fi MAC
    Subscriber Carrier
    Phone Number (for company phones not only the last 4 digits. we need the complete number)

    Phone Number2 (for DUAL SIM phones)
    International Mobile Equipment Identity or IMEI (IMEI)
    Free Storage Space
    Total Storage Space
    Serial Number
    Model (f.e. Lumia 925)
    Manufacturer (f.e. NOKIA)
    Current Operator Name
    Data Roaming Enabled

    13 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  20. Search devices by ICCID

    It would be really helpful if we could search devices by the ICCID of the currently inserted SIM card. Sometimes our users switch the SIM cards between devices and we would like to be able to check which SIM is in which device.

    13 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Feedback and Knowledge Base