Microsoft

Microsoft Endpoint Manager Intune Feedback

Suggestion box powered by UserVoice

Ideas

What features would you like to see?

All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Microsoft Endpoint Manager Intune, though we can’t promise to reply to all posts.

Standard Disclaimer – our lawyers made us put this here ;-) We have partnered with UserVoice, a third-party service, so you can give us feedback. Please note that the Intune feedback site is moderated and is a voluntary participation-based project. Please send only feature suggestions and ideas to improve Intune. Do not send any novel or patentable ideas, copyrighted materials, samples or demos. Your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy, including the license terms.


  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. I would like the iOS MAM app exemption works the same as Android

    Currently when we create MAM policy for Android and add android local SMS app to exemption, protected content in managed app like outlook can be selected, shared to SMS app.
    But when we create MAM policy for iOS and add iOS native SMS app to exemption, it does not allow content to be shared via SMS app. What it does is to allow tapping and holding tel URLs in managed app, and allow an option to open SMS app targeting that tel number.

    Intune App exemption document:
    https://docs.microsoft.com/en-us/intune/app-protection-policy-settings-ios#data-transfer-exemptions

    Apple URL Scheme reference: https://developer.apple.com/library/archive/featuredarticles/iPhoneURLSchemeReference/SMSLinks/SMSLinks.html#//appleref/doc/uid/TP40007899-CH7-SW1

    11 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  2. Single Signon for Office Apps/Manage Apps

    As a managed device has a user associated with it. Can't it be setup that the Office Apps/Managed apps could do SSO? I find it annoying that you can't log into one office app (Word, OneDrive) on a Android/IOS device and it not know who you are.

    If the device is managed, then it knows the user. It would make sense to ease user experience by making them only sign in once (when they enrol).

    11 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  3. Allow for paste into app exceptions

    I'd like to have the ability to create an app exception for the copy/paste option so that I can paste text from a managed app into a specified unmanaged app.

    11 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  4. Swith to enable/disable PIN request

    HI,
    Windows 10 machine with full intune client instaled and Azure AD joined requires PIN setup.
    Thete must be a swith or a policy to enable /disable the requirement.
    More then. It would be usefull to select groups who will be required or not to use this setup.

    Currently users can benefit of Azure AD authenticaton but required to setup pin. Everyone!
    If "downgrade" the computer to be "mobile device"the PIN request no more appears. But would not benefit from intune management: windows updates, inventory...

    It would be really helpful.
    Thank you!

    11 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  5. Ability to remove Stale/Obsolete devices from selection of App Selective Wipe function

    Stale and obsolete devices are showing up when selecting devices to perform app selective wipes. Stale/Obsolete devices seem to be occurring due to device being factory reset before user opens all protected apps after app selective wipe is issued. Another scenario where stale/obsolete devices are occurring is if a user unregisters a device in the Authenticator apps' Settings option, and registers the device under a different username. While the devices does become removed as a registered device for the previous user in Azure AD, it does not get removed as a selectable device on the old user account when performing…

    9 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  6. Connect to GoTo Meeting

    When I click a GoTo Meeting link in Outlook the landing page opens in Intune Browser. From there I can not open the landing page link to open my meeting in the GoTo Meeting app.

    9 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  7. Allow MDM Configuration of MS Apps

    Allow all MS apps to support KeyPairs for username or other configuration parameters such as setting a pin number. For apps like Skype4Business include advanced items like server if needed.

    9 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  8. Provide MAM policies for Android for Work like as in Android MAM Policies

    Currently Android for work MAM Policies doesn't restrict Save as, taking screenshot.

    Please provide the same MAM policies for Android for Work as in for Usual Android Policy.

    9 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  9. 9 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  10. Add "Managed Application" as an option for restricting web content transfer in App Protection Policy

    Currently in the app protection policies -> Restrict web content transfer with other apps, the only settings you can choose is either "All apps" or "Microsoft Edge".

    It would be nice if you could add "Managed Applications" as an option, so that SharePoint Online links for example, could open in the SharePoint App without having to allow 3rd party apps as well.

    9 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  11. MAM support for native iOS apps

    Natively support and add the native applications for a protection policy. Even with the adding of the native apple app bundle ID, the policy doesn't apply for the app(s).

    9 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  12. Migrate MAM Policies

    There does not seem to be any way to export/import or migrate MAM policies from the Intune Portal to the Azure Portal. How are we supposed to do this? It would be helpful if there was some mechanism/wizard/script

    8 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  13. Ability to block individual services. (Onedrive)

    I cannot be the only person requesting this. But our organization would like to Block Onedrive usage on mobile devices and only allow it on desktop clients that are managed. As of this writing this is not possible using Intune, MAM, or Conditional Access Policy. I have spoken to numerous engineers at Microsoft who have tried different methods and end result was that it is not possible. We will be using OneDrive to store PHI data and we are restricting sharing to internal users only. Problem is we have our own MDM solution (Mobile Iron) and we can block end…

    8 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  14. Ability to view PDFs on devices managed by inTune MAM (without enrollment)

    Currently it is not possible to open PDFs from the Outlook app on a mobile device that is managed by inTune MAM (without enrolment). The PDF readers are not currently compatible with this Azure portal feature. I really hope that this is in the short-term pipeline.

    8 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  15. Introduce Sway as a managed application using MAM to make use of the Sway app.

    Currently Sway links shared in O/L open in the managed browser despite the Sway app being installed on the device (this is by design as O/L is a managed app).
    Would be good to get the Sway app managed as an Intune managed app so we can make use of it via shared links.

    8 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  16. Add a capability of "All available apps" in app protection policy

    Add a capability of "All available apps" in app protection policy > Client app
    To apply app protection policy to all MAM available apps.
    Because we cannnot receive information of the release of new intune apps.

    7 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  17. Allow "Select apps to exempt" for "Receive data from other apps" in MAM policies

    Our client has one MAM policy, and he set the "Receive data from other apps" as "Policy managed apps". And he is trying to transfer data like photos using native applications including but not limited to Photo Gallery to Policy managed apps. However, he is being blocked from doing that. He is able to retrieve data from local storage if he is using Policy managed apps. Although we have delivered the alternative resolution, the respond from the users is negative. Hence, please also add the "Select apps to exempt" function to "Receive data from other apps" as well. Thank you…

    7 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  18. 7 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  19. Support for MDM and MAM from different Intune instances

    So, it is apparently not supported to use Intune MAM from Company A and use Intune MDM from Company B. However it is possible to use Intune MAM from Company A and use "third party EMM provider" MDM from Company B. Why can't we use Intune for both purposes in this scenario?

    6 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  20. Add photo gallery to the Data Transfer Exemption list "Allow app to receive data from other apps" setting

    The Setting "Allow app to receive data from other apps:" needs to have more options for accessing Native Applications. Currently it only has Policy Managed Apps or Any App.
    We would like to see the ability to choose photo Gallery to allow users to attach photos from the native photo gallery without having to open this up to everything.

    6 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Feedback and Knowledge Base