Microsoft

Microsoft Endpoint Manager Intune Feedback

Suggestion box powered by UserVoice

Ideas

What features would you like to see?

All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Microsoft Endpoint Manager Intune, though we can’t promise to reply to all posts.

Standard Disclaimer – our lawyers made us put this here ;-) We have partnered with UserVoice, a third-party service, so you can give us feedback. Please note that the Intune feedback site is moderated and is a voluntary participation-based project. Please send only feature suggestions and ideas to improve Intune. Do not send any novel or patentable ideas, copyrighted materials, samples or demos. Your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy, including the license terms.


  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Disabled ads in Office apps (ads for others Office apps)

    Add an option to disable the ads for others Office apps in the iOS apps.

    Currently, we don't use some apps (ie: outlook) but users can see the list of the apps available with his subscription under the "Office apps" tab. From a user perspective, it's confusing to have these recommendation to use these apps and that they are not supported/implemented by the company.

    17 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  2. Force the user to do full authentication following selective wipe

    When you issue a selective wipe you should also clear all MFA tokens and cookies and authenticaton cache so the user has to complete a full re-authentication after adding their account back. Right now outlook doesn't ask for the user to reauthenticate following the selective wipe and if you put their email address it will give them access again.

    Or following wipe automatically disable their account. This way they can't get back into the device or are forced to change their password.

    16 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  3. Intune App Protection - Cut/copy/paste a number of characters

    Once you have restricted the copy&paste from Managed Apps to non-managed Apps, it would be useful if you could still allow copy/paste a defined number of chars to a non managed app (eg. 100 chars)

    14 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  4. App protection policies - Adding custom BundleID/PackageID containng numeric characters

    Currently when trying to add custom BundleID/PackageID for App protection policies only alphanumeric characters are supported

    for example: com.test.app

    But some apps can have numeric characters in bundle id

    for example: com.3test.app.

    Those kind of BundleID/PackageID app are currently not allowed, hence can not be added for App Protection Policies.

    14 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  5. Access to a Corporate AppStore without MDM enrollment

    Sometimes, you only have three simple requirements:


    1. Be able to install Microsoft apps like outlook, onedrive, onenote
      => This can be done using the public appstores.


    2. Be able to secure those apps.
      => This can be done using MAM without MDM enrollment.


    3. Be able to install an app that was in-house developed, intended only for internal users, and not available in the public appstores.
      => Today this requires the device to be enrolled in MDM just to access the corporate appstore.


    It would be nice if these users can access a corporate appstore using their azure AD credentials that does…

    14 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  6. Outlook Mobile selective app wipe (MAM) should include saved contacts

    When the Outlook Mobile app receives a wipe command via MAM it should check for the "Save Contacts" feature and, it present, should purge the synced contacts at the same time as it wipes itself.

    14 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  7. antivirus for mobile

    will antivirus for mobile devices, android, ios and windows be available in Microsoft Intune soon

    14 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  8. Allowing Synchronization of Notes

    Allow Exchange/outlook Notes to synchronize with device

    13 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  9. Unable to set Corporate email account as the default on Smartphones

    I'm using an iPhone 6 and seem to be unable to set the Corporate email account as the default mail profile.

    If I have one personal account configured, the option to set a default account doesn't show.

    If I have two personal accounts configured as well as the Corporate account, the option to set a default account appears, but only lets you select one of the two personal accounts (the corporate one isn't listed as an option to select).

    I have spoken to the Intune support team who confirmed this is the behaviour they also reproduced and that I need…

    13 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    3 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  10. appconfig

    We have the need for Intune to support managing AppConfig management of applications by vendors that rely on that for the management of their applications.

    http://appconfig.org/

    I currently have multiple vendors that only support this as a means to manage their application.

    It is surprising that Microsoft doesn't currently support it when so many other big name MDM's do.

    13 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    3 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  11. Apply MAM policies to Outlook mobile through Intune if company has only Exchange on-premise

    Apply MAM policies to Outlook mobile through Intune if customer has only Exchange on-premise. Goal is to restrict the user in the allowed Mail-App on the device (Android, iOS) to not add or forward/copy content to a second non-company mail account inside the same mail app (e.g. Outlook mobile).

    This is possible with exchange online or hybrid, but not if there is only exchange on-premis used: https://blogs.technet.microsoft.com/exchange/2018/04/02/a-new-architecture-for-exchange-hybrid-customers-enables-outlook-mobile-and-security/

    13 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  12. MyApps.microsoft.com

    Except attaching logo, there is not much options to customize branding and look and feel for myapp

       -  No apparent way to logically group/separate any of the apps listed 
    

    o by type (show web apps together, LOB apps together, …)
    o by use (show all company published apps separate from Microsoft apps…)
    • Alphabetical order seems to be the only way to list all apps on screen
    • How to disable/hide certain Microsoft apps (not used at organization/Enterprise) from being shown in the list
    o Ie. Stream, Forms, Dynamics …
    • Suggested apps
    o No way to list a description…

    13 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    5 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  13. Add Native Messaging app to the Data Transfer Exemption list.

    You are already able to phone a contact directly from Outlook contacts using the Native Phone app. We would like to see the ability to send a text message to an Outlook contact using the Native Messaging app

    13 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  14. MAM pilicies preventing onedrive, dropbox and google drive from appearing

    Please allow the prevent onedrive, dropbox and google drive from appearing within the outlook files screen by using an Itune MAM policy

    12 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  15. Users can bypass MAM policy applied to Outlook app

    Users can bypass MAM policy applied to Outlook app (eg copy,paste/screen grab) by adding their o365 account to a second email client such as gmail app. Once their phone is enrolled and complaint they're not prevented from connecting to o365 mail from unmanaged email clients.

    12 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  16. Allow targeting multiple apps when creating app configuration policy for managed devices

    We need to create app configuration policy with IntuneMAMUPN key for every application on which we want to apply Intune App Protection(for managed devices). This is current design for Intune . We don't need this type of option. We need to have a single app configuration policy with which we should be able to apply IntuneMAMUPN key for app applications.

    12 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  17. I would like the iOS MAM app exemption works the same as Android

    Currently when we create MAM policy for Android and add android local SMS app to exemption, protected content in managed app like outlook can be selected, shared to SMS app.
    But when we create MAM policy for iOS and add iOS native SMS app to exemption, it does not allow content to be shared via SMS app. What it does is to allow tapping and holding tel URLs in managed app, and allow an option to open SMS app targeting that tel number.

    Intune App exemption document:
    https://docs.microsoft.com/en-us/intune/app-protection-policy-settings-ios#data-transfer-exemptions

    Apple URL Scheme reference: https://developer.apple.com/library/archive/featuredarticles/iPhoneURLSchemeReference/SMSLinks/SMSLinks.html#//appleref/doc/uid/TP40007899-CH7-SW1

    11 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  18. Ability to create a new document and save it in a corporate/pro destination on iOS

    Currently, it's not possible to create a brand document into the Office apps for iOS and save it to the professional part of the local storage.
    New professional document can only be created if SharePoint and/or OneDrive are implemented.

    11 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  19. Single Signon for Office Apps/Manage Apps

    As a managed device has a user associated with it. Can't it be setup that the Office Apps/Managed apps could do SSO? I find it annoying that you can't log into one office app (Word, OneDrive) on a Android/IOS device and it not know who you are.

    If the device is managed, then it knows the user. It would make sense to ease user experience by making them only sign in once (when they enrol).

    11 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  20. Swith to enable/disable PIN request

    HI,
    Windows 10 machine with full intune client instaled and Azure AD joined requires PIN setup.
    Thete must be a swith or a policy to enable /disable the requirement.
    More then. It would be usefull to select groups who will be required or not to use this setup.

    Currently users can benefit of Azure AD authenticaton but required to setup pin. Everyone!
    If "downgrade" the computer to be "mobile device"the PIN request no more appears. But would not benefit from intune management: windows updates, inventory...

    It would be really helpful.
    Thank you!

    11 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Feedback and Knowledge Base