Microsoft

Microsoft Intune Feedback

Ideas

What features would you like to see?

All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Microsoft Intune, though we can’t promise to reply to all posts.

Standard Disclaimer – our lawyers made us put this here ;-) Please note that the Microsoft Intune feedback site is moderated and is a voluntary participation-based project. Please do not send any novel or patentable ideas, copyrighted materials, samples or demos which you do not want to grant a license to Microsoft. See the “User Voice Terms of Service” link below for more information.

How can we improve Microsoft Intune

You've used all your votes and won't be able to post a new idea, but you can still search and comment on existing ideas.

There are two ways to get more votes:

  • When an admin closes an idea you've voted on, you'll get your votes back from that idea.
  • You can remove your votes from an open idea you support.
  • To see ideas you have already voted on, select the "My feedback" filter and select "My open ideas".
(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can support and comment on it.

If it doesn't exist, you can post your idea so others can support it.

Enter your idea and we'll search to see if someone has already suggested it.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Extend the SCEP enrollment profile with additional Active Directory attributes

    At the moment only two user attributes (CN and UPN) are available to use in SCEP profiles. With our current MDM solution it is possible to use every AD attribute to request a certificate with this unique attribute. Both Intune and the other MDM solution are using the same SCEP server so it is possible. This seems like extending a table in Intune or using a text box with variables. We have the need to use ExtensionAttributes as the unique identifier for a certificate.

    112 votes
    Vote
    Sign in
    Check!
    (thinking…)
    Reset
    or sign in with
    • facebook
    • google
      Password icon
      I agree to the terms of service
      Signed in as (Sign out)
      You have left! (?) (thinking…)
      2 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
    • Include Azure DRS in DEP Enrollment

      Microsoft Partner here - One of the main reason's business's look to utilize Apple's DEP Programme is to streamline their enrolment into an MDM server. Using the traditional approach as a business requires end users to create an Apple account for the sole purpose of downloading the MDM enrolment app, in our case Intune and then follow a wizard.
      Migrating 1000's of iOS devices using the company portal method in this manner is not affective so DEP is a god send to address this issue.
      Unfortunately, when used with Intune and user affinity the credentials are passed to the MDM…

      104 votes
      Vote
      Sign in
      Check!
      (thinking…)
      Reset
      or sign in with
      • facebook
      • google
        Password icon
        I agree to the terms of service
        Signed in as (Sign out)
        You have left! (?) (thinking…)
        5 comments  ·  Flag idea as inappropriate…  ·  Admin →
      • Deploy unique computer certificates using Intune/SCEP/NDES

        We want to deploy unique device certificates to our Windows 10 devices using Intune/SCEP/NDES. At the moment we can only deploy user certificates.

        The story behind this idea is as follows:

        We are using shared Windows 10 devices and a wireless environment that uses certificate authentication. Because of the shared devices and the possibility that the user never logged on to the device yet, we want the wireless profile to be connected before user logon. And that requires a unique computer certificate.

        167 votes
        Vote
        Sign in
        Check!
        (thinking…)
        Reset
        or sign in with
        • facebook
        • google
          Password icon
          I agree to the terms of service
          Signed in as (Sign out)
          You have left! (?) (thinking…)
          3 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
        • Allow Device Serial Number

          Allow the use of Device Serial Number when assigning devices to a Intune Azure AD Device Group. We have thousands of iPads that are DEP enrolled and assiged the User-Agnostic Attribute. We also have multiple DEP profiles. These devices do not have users names or email addresses assigned to them. They all have the same device name also, i.e. iPad. Thus, there is no way to open an Azure AD Device Group and add a specific device to it because the only attribute(s) that make one iPad different from the other is: Serial Number, IMEI, or the Unique Identifier. None…

          105 votes
          Vote
          Sign in
          Check!
          (thinking…)
          Reset
          or sign in with
          • facebook
          • google
            Password icon
            I agree to the terms of service
            Signed in as (Sign out)
            You have left! (?) (thinking…)
            5 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
          • Support for InstallApplication

            InstallApplication is a native MDM command that allows for installing packages on the client upon enrollment.
            Support for InstallApplication is already in Airwatch and SimpleMDM and possible in more MDM solutions.

            See also:

            https://simplemdm.com/2017/03/07/deploy-munki-apple-dep-mdm/
            http://blog.eriknicolasgomez.com/2017/07/27/Custom-DEP-Part-7-Getting-started-with-AirWatch-9.1.3/

            38 votes
            Vote
            Sign in
            Check!
            (thinking…)
            Reset
            or sign in with
            • facebook
            • google
              Password icon
              I agree to the terms of service
              Signed in as (Sign out)
              You have left! (?) (thinking…)
              3 comments  ·  MDM - MacOS-specific  ·  Flag idea as inappropriate…  ·  Admin →
            • No pop-up windows when add user in CornerStone ERP system on iPhone Managed Browser.

              No pop-up windows when add user in CornerStone ERP system on iPhone Managed Browser. But Safari and Chrome works fine. Managed browser Android it works. But only iOS doesn't.

              24 votes
              Vote
              Sign in
              Check!
              (thinking…)
              Reset
              or sign in with
              • facebook
              • google
                Password icon
                I agree to the terms of service
                Signed in as (Sign out)
                You have left! (?) (thinking…)
                0 comments  ·  Managed Browser  ·  Flag idea as inappropriate…  ·  Admin →
              • Automatic enrollment for Hybrid Azure AD Joined Devices

                Missing the ability to automatically enroll Windows 10 devices that are hybrid Azure AD Joined, for agentless management. This would favour the use of agentless management for domain joined devices.

                21 votes
                Vote
                Sign in
                Check!
                (thinking…)
                Reset
                or sign in with
                • facebook
                • google
                  Password icon
                  I agree to the terms of service
                  Signed in as (Sign out)
                  You have left! (?) (thinking…)
                  2 comments  ·  MDM - Windows-specific  ·  Flag idea as inappropriate…  ·  Admin →
                • Conditional Access: Session Controls for Exchange Online (Outlook on the Web)

                  Expand the cloud app Session Controls area to be able to apply OWA policies on-the-fly.

                  Allow admins to do things like block download access unless the user is within a trusted location or on a compliant or domain joined device.

                  Effectively this, but without the need for ADFS: https://technet.microsoft.com/en-us/library/dn530630(v=exchg.150).aspx

                  Combining that with the SharePoint session controls will result in a more complete browser-only experience for unmanaged/untrusted devices.

                  15 votes
                  Vote
                  Sign in
                  Check!
                  (thinking…)
                  Reset
                  or sign in with
                  • facebook
                  • google
                    Password icon
                    I agree to the terms of service
                    Signed in as (Sign out)
                    You have left! (?) (thinking…)
                    1 comment  ·  Conditional Access  ·  Flag idea as inappropriate…  ·  Admin →
                  • Feature Upgrade management and distribution through the Intune client

                    Currently, when the Intune client is installed on a Windows 10 PCs, it is impossible to configure Feature Upgrade ring and deferral using GPO. The deferral GPO will break the communication between the Intune client and the service.

                    Currently, there is no supported configuration to allow PC management with Intune client, AND the ability to defer Feature Upgrades.

                    We desperately need support for:
                    - A deferral parameter in the Intune agent policy
                    - Or better, to approve / block / distribute feature upgrades using the Intune admin console and the Intune client

                    I know that MDM mode is the recommended…

                    22 votes
                    Vote
                    Sign in
                    Check!
                    (thinking…)
                    Reset
                    or sign in with
                    • facebook
                    • google
                      Password icon
                      I agree to the terms of service
                      Signed in as (Sign out)
                      You have left! (?) (thinking…)
                      0 comments  ·  PC Management  ·  Flag idea as inappropriate…  ·  Admin →
                    • Automatically Assign DEP Profile to New Devices

                      I would like to see the default Enrollment Profile assigned to all devices in the DEP.

                      In the new Azure Portal, I have to manually assign the profile to a device and if we miss a few, it makes device deployment challenging.

                      Users don't like being told to erase all content and setup the phone a 2nd time. We would enroll through the company portal app, but users are able to delete the profile if enrolled that way. We do not want Employees deleting profiles.

                      27 votes
                      Vote
                      Sign in
                      Check!
                      (thinking…)
                      Reset
                      or sign in with
                      • facebook
                      • google
                        Password icon
                        I agree to the terms of service
                        Signed in as (Sign out)
                        You have left! (?) (thinking…)
                        2 comments  ·  MDM - iOS-specific  ·  Flag idea as inappropriate…  ·  Admin →
                      • Auto-populate app icon/logo when adding line-of-business apps

                        When adding line-of-business (LOB) apps, the app icon/logo is not automatically populated. It would be good to be able to retrieve the app icon from the app file instead of having to manually upload the icon.

                        15 votes
                        Vote
                        Sign in
                        Check!
                        (thinking…)
                        Reset
                        or sign in with
                        • facebook
                        • google
                          Password icon
                          I agree to the terms of service
                          Signed in as (Sign out)
                          You have left! (?) (thinking…)
                          1 comment  ·  Software Management  ·  Flag idea as inappropriate…  ·  Admin →
                        • Folder redirection to Onedrive for Business

                          I would like to have a Intune Policy to redirect, for example, the Documents folder of an Azure AD Joined device to Onedrive for Business of the user.

                          43 votes
                          Vote
                          Sign in
                          Check!
                          (thinking…)
                          Reset
                          or sign in with
                          • facebook
                          • google
                            Password icon
                            I agree to the terms of service
                            Signed in as (Sign out)
                            You have left! (?) (thinking…)
                            2 comments  ·  PC Management  ·  Flag idea as inappropriate…  ·  Admin →
                          • Allow a shared device where users can log in and log out of devices.

                            Have a shared device configuration where users can check in and check out of a device it will grad specific policies for the user while they are checked into the device.

                            For example it will allow them to download e-mail when they are checked into the device.

                            13 votes
                            Vote
                            Sign in
                            Check!
                            (thinking…)
                            Reset
                            or sign in with
                            • facebook
                            • google
                              Password icon
                              I agree to the terms of service
                              Signed in as (Sign out)
                              You have left! (?) (thinking…)
                              0 comments  ·  User Management  ·  Flag idea as inappropriate…  ·  Admin →
                            • Device Location for android and windows devices

                              You have device location for iOS, please bring that to the other platforms!

                              It's an incredibly important feature, and we can't fully migrate until its included. Every other MDM solution ever has this feature.

                              12 votes
                              Vote
                              Sign in
                              Check!
                              (thinking…)
                              Reset
                              or sign in with
                              • facebook
                              • google
                                Password icon
                                I agree to the terms of service
                                Signed in as (Sign out)
                                You have left! (?) (thinking…)
                                1 comment  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
                              • Migrate Intune PC management into new Azure Intune portal

                                Very cool that the Mobile portion has been migrate into the new Azure Intune portal.

                                But what the current PC management?
                                Why does it still require the old Silverlight portal?
                                Bad experience to browse between 2 portal.

                                Can you guys migrate everything into the new Azure Intune Portal?

                                Please Intune Team, migrate the PC management portion into the new Azure Intune Portal for the benefit of your clients,

                                34 votes
                                Vote
                                Sign in
                                Check!
                                (thinking…)
                                Reset
                                or sign in with
                                • facebook
                                • google
                                  Password icon
                                  I agree to the terms of service
                                  Signed in as (Sign out)
                                  You have left! (?) (thinking…)
                                  3 comments  ·  PC Management  ·  Flag idea as inappropriate…  ·  Admin →
                                • Remotely uninstall specific app(s) from a particular device

                                  It is now possible to perform app selective wipe but this function is for Microsoft apps only. It is also possible to uninstall a specific app from all devices. However, there is no way to select specific apps to uninstall from a particular device. This feature is useful for troubleshooting app installation or to force-install for only one device/user.

                                  10 votes
                                  Vote
                                  Sign in
                                  Check!
                                  (thinking…)
                                  Reset
                                  or sign in with
                                  • facebook
                                  • google
                                    Password icon
                                    I agree to the terms of service
                                    Signed in as (Sign out)
                                    You have left! (?) (thinking…)
                                    0 comments  ·  Mobile Application Management (MAM)  ·  Flag idea as inappropriate…  ·  Admin →
                                  • Standardize iOS app icons with rounded edges in Company Portal

                                    The standard way to display iOS app icons is with rounded-edged frame as seen in iOS App Store. For Android, it is a mix of rounded and squared edges. For Windows, it is square only. In the Company Portal, it is standardized to square icons. It will be good to be able to automatically display iOS app icons with rounded-edges since our developers have catered for that when creating the icons.

                                    9 votes
                                    Vote
                                    Sign in
                                    Check!
                                    (thinking…)
                                    Reset
                                    or sign in with
                                    • facebook
                                    • google
                                      Password icon
                                      I agree to the terms of service
                                      Signed in as (Sign out)
                                      You have left! (?) (thinking…)
                                      0 comments  ·  Mobile Application Management (MAM)  ·  Flag idea as inappropriate…  ·  Admin →
                                    • Ability to mark an app as BETA

                                      It will be good to be able to mark an app as BETA. When an app is marked as BETA, it will show the BETA banner on the app icon in the Company Portal. This will be a good way to differentiate production and beta apps in the Company Portal.

                                      14 votes
                                      Vote
                                      Sign in
                                      Check!
                                      (thinking…)
                                      Reset
                                      or sign in with
                                      • facebook
                                      • google
                                        Password icon
                                        I agree to the terms of service
                                        Signed in as (Sign out)
                                        You have left! (?) (thinking…)
                                        0 comments  ·  Software Management  ·  Flag idea as inappropriate…  ·  Admin →
                                      • Enable Delivery Optimization or BranchCache on Office 365 ProPlus

                                        With the nice new feature Deploy Office 365 ProPlus with Microsoft Intune, it would really help if the bits and bytes from the Office 365 ProPlus were also optimized delivered (Windows 10 DO or BranchCache?) so when deploying Windows 10 with only Intune as BYO solution the clients on the same LAN do not all have to download all Office 365 Proplus bytes (~1,2 GB)

                                        9 votes
                                        Vote
                                        Sign in
                                        Check!
                                        (thinking…)
                                        Reset
                                        or sign in with
                                        • facebook
                                        • google
                                          Password icon
                                          I agree to the terms of service
                                          Signed in as (Sign out)
                                          You have left! (?) (thinking…)
                                          0 comments  ·  Software Management  ·  Flag idea as inappropriate…  ·  Admin →
                                        • User Comments and Ratings for apps

                                          In the Company Portal app listing, it is not possible to provide comments / ratings. This will be good especially for Line-of-business apps where users can directly provide feedback at the Company Portal.

                                          5 votes
                                          Vote
                                          Sign in
                                          Check!
                                          (thinking…)
                                          Reset
                                          or sign in with
                                          • facebook
                                          • google
                                            Password icon
                                            I agree to the terms of service
                                            Signed in as (Sign out)
                                            You have left! (?) (thinking…)
                                            0 comments  ·  Software Management  ·  Flag idea as inappropriate…  ·  Admin →
                                          ← Previous 1 3 4 5 50 51
                                          • Don't see your idea?

                                          Feedback and Knowledge Base