Microsoft

Microsoft Endpoint Manager Intune Feedback

Suggestion box powered by UserVoice

Ideas

What features would you like to see?

All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Microsoft Endpoint Manager Intune, though we can’t promise to reply to all posts.

Standard Disclaimer – our lawyers made us put this here ;-) We have partnered with UserVoice, a third-party service, so you can give us feedback. Please note that the Intune feedback site is moderated and is a voluntary participation-based project. Please send only feature suggestions and ideas to improve Intune. Do not send any novel or patentable ideas, copyrighted materials, samples or demos. Your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy, including the license terms.


  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. import approved apps into restricted apps

    I want to use the approved apps feature to be informed about the installation of non-managed applications. I can import a CSV, but would like the option to import my list of managed apps.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  2. 3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  3. Provide Event logs for Windows 10 WIP protected Apps

    Currently Intune only provides App Protection reporting for iOS and Android but not Windows 10.

    I need to access the event logs for when e.g. OneDrive is set as a protected app in WINDOWS 10 with "allow override" set. It informs / warns the user that e.g. uploading a file to their personal Google Drive account will be logged but currently there is no easy way to access these logs as an admin. I would expect these to the available in Azure Log Analytics or in Intune as a report.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  4. Because our phones will be used in service trucks. We would like the ability to disable functionality on the phones when they are in motion

    If the phone is in motion say more than 5 or 10 MPH that texting and everything but receiving calls or voice dialing outbound calls is disabled. We want to ensure our drives do not text and drive and being able to lock it while it is in motion would be a great help. SOTI Mobicontrol has this functionality already.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  5. Accept Face ID on iOS in place of MAM PIN

    MAM policy on iOS should allow option for managed application to accept Face ID in place of PIN.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  6. MAM Outlook desktop support

    Ability to force users to be able to authenticate only by using second factor in both Outlook/OWA/Sharepoint. Currently this is done by complex access token policy's which are very untransparent to end users.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  7. Microsoft should make some policies available on Intune to publish and manage Misrosoft Launcher application

    Need to have Intune MAM Policies for Misrosoft Launcher application so that organization can get some benefits of this app.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  8. Use the same AAD broker app on iOS and Android

    Currently iOS uses Microsoft Authenticator for device registration while Android uses Intune Company Portal. I realize these experiences are probably supported by different teams, but the registration experience should be the same on both platforms... for example, both iOS and Android should leverage Microsoft Authenticator to register with Azure AD.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  9. Device Name Not Populating Correctly for iOS Outlook in MAM

    The device name in the app reporting screen does not appear to be populating correctly for Outlook (iOS). The name for Outlook is generic (iPhone or iPad), while other applications present the actual device name (see screenshot). This is the Intune Mobile Application Management portal in Azure (device is not otherwise enrolled in a MDM system).

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →

    This is currently the expected behavior, but we know it’s not good behavior. We have a work item in our backlog to separate the device name and device type into separate columns. Would that solve the problem for you?
    Since it isn’t a bug, just frustrating design, I’m moving this to the Ideas forum instead of Issues.

  10. Applications missing Intune SDK

    Currently a lot of applications (Android, I assume it's true for IOS as well), require Intune SDK integration.

    As soon as you enable MAM in your environment, supported apps become isolate from other company approved apps such as Google Translate or Microsoft Translator (even app owned by Microsoft). What is the point in this case of Company approved apps? if they cannot receive company date if explicitly permitted.

    I would suggest providing a different way of integrating Android apps in the Intune ecosystem. I don't expect all app vendors will integrate their app with the Intune SDK, which limits the…

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  11. Xamarin: Provide a callback override to get token from ADAL

    Currently, the SDK cannot access ADAL token cache. This is not an issue in Android because of this:

    public class MAMServiceAuthenticationCallback : Java.Lang.Object, IMAMServiceAuthenticationCallback
    {

    public string AcquireToken(string p0, string p1, string p2)
    
    {
    var authenticator = SimpleIoc.Default.GetInstance<IAuthenticator>();
    return authenticator.AccessToken;
    }

    }

    Here i am returning the token that i previously acquired with ADAL.

    Can we have something similar in iOS?

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  12. Outlook Notifications Not Allowed

    When the setting is configured to restrict data transfer to only managed applications, the notification generated by the Outlook app on the phone is not allowed to open the Outlook app. This has to be a bug? My outlook notification is not allowed to open my outlook app?

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  13. Allow to skip pincode for app if device is MDM enrolled with PIN requirement

    When a device is enrolled in Intune with the Company portal, and the policy has a pin requirement, we would like to be able to skip the app pincode.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  14. Enable faceid on intune policy for Android to login to outlook.

    phone like pixel 4 that doesn't have fingerprint sensor are complaining to me about having to type in the pin all the time. Please enable the faceid like the policy on the IOS devices.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  15. MyApps: support MAM & identity brokers (for cross-app SSO) - iOS & Android

    We have some SSO apps that have to be launched from the MyApps application due the provider not supporting SP-initiated SSO. The MyApps application is the solution, however, MyApps does not support MAM nor identity brokers on iOS and Android, so without MDM, the users have to logon to the application with a full username and password almost every time they want to use the app.

    2 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  16. Bulk delete App selective Wipe requet

    Is there a method to bulk delete the already created Apple Selective wipe? The wipe requests are pending status, and we would like to bulk delete the ones which have been pending for 2 weeks.

    In the UI portal, we can see the requests' creation time and delete one by one. If the UI has the filter button, to filter the creation date, and can perform bulk choose and deletion, this will be easier for ITs to manage and perform actions.

    2 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  17. Option to exempt certain apps to allow MS apps to receive data from other apps

    Be able to add apps as exempt, similar to the ability to exempt apps for “Allow app to transfer data to other apps”.

    Currently the inability to exempt apps from which Microsoft apps can receive data from limits users ability to open documents and links from other corporate apps (i.e. Workplace by Facebook) into MS apps.

    2 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  18. Intune Data Security in Outlook Email App

    We are trying to Roll out Intune for Pan organization however data security for Windows Mobile is a Major concern as MAM policy doesn't support for Outlook Email as how it works for Outlook in Android and Outlook for iOS. For this reason we are trying to block email access from Windows Mobile Platform. Even we are seeing problem here as we use Blackberry , Airwatch services and cant block the Mobile Platform from Exchange Online. It would be good if from Intune itself there is a capability to block certain Mobile Platforms.

    2 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  19. Restrict Contact Fields - Outlook Mobile (MAM)

    Offer\Allow the ability to control which fields from Outlook contacts (full client on managed endpoint) are sync'd via Exchange Online to MAM-WE controlled Outlook Mobile. For instance, if we only wanted to sync name and business phone number but no other fields.

    2 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  20. restrict personal unenrolled windows 10 device from saving file to desktop and open

    restrict personal unenrolled windows 10 device from saving file to desktop and open

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Feedback and Knowledge Base