Microsoft

Microsoft Intune Feedback

Suggestion box powered by UserVoice

Ideas

What features would you like to see?

All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Microsoft Intune, though we can’t promise to reply to all posts.

Standard Disclaimer – our lawyers made us put this here ;-) We have partnered with UserVoice, a third-party service, so you can give us feedback. Please note that the Microsoft Intune feedback site is moderated and is a voluntary participation-based project. Please send only feature suggestions and ideas to improve Microsoft Intune. Do not send any novel or patentable ideas, copyrighted materials, samples or demos. Your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy, including the license terms.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Assign Scope Tag for bulk of Devices

    Suppose, the business has 1000+ devices, and they need to be assigned with different scope tag, its really painful to assign the tag one by one, so we would like a design change to allow Scope tag assignment for bulk of devices instead of one by one

    34 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    5 comments  ·  Azure Admin Console  ·  Flag idea as inappropriate…  ·  Admin →
  2. More Powershell capabilities for Intune

    It would be nice to have more powershell commandlets to use for managing Intune related actions.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Scripting-Graph/PowerShell  ·  Flag idea as inappropriate…  ·  Admin →
  3. Please add iCloud is Required when "Save Contacts" is enabled from the phone

    Documentation update. Need to be more explicit that iCloud must be turned on for Save Contacts to phone is enabled.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
  4. Folder redirection to Onedrive for Business

    I would like to have a Intune Policy to redirect, for example, the Documents folder of an Azure AD Joined device to Onedrive for Business of the user.

    502 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    26 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  5. 1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →

    Hi – I’m not sure if you’re asking about subscribing to a doc page to get updates, or subscribing to an item on UserVoice to get updates.

    For UserVoice, you can edit your personal settings to turn on or off notifications from UserVoice when there are comments from other users, and if you want admin status updates. If we make a change, I post it publicly and then send email to everyone who opted in and provided a valid email address.

    If you’re asking about getting updates for doc pages, you might want to vote for this idea https://microsoftintune.uservoice.com/forums/291681-ideas/suggestions/36516880-what-s-new-in-intune-add-rss-feed

    The docs are all stored in GitHub now, so if you know how to use that, you can “watch” a topic to see new releases or all activity on that topic. Here’s the link to the topic in GitHub: https://github.com/MicrosoftDocs/IntuneDocs/blob/master/intune/whats-new.md

    Does that get you what you want?

  6. Add already joined devices to autopilot for reimaging

    It would be nice to be able to add already joined devices into Autopilot program (like a writeback or sync) for re imaging purposes. This would make re-purposing hardware simple and easy for users and admins alike.

    I cannot gather the hardware ids through AzureAD (cloud only) with no WMI capabilities and limited AAD attributes being available.

    16 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Autopilot/Windows enrollment  ·  Flag idea as inappropriate…  ·  Admin →

    As of the release the week of Oct 1, 2018, you can apply Autopilot profiles to enrolled Win 10 devices that have not already been registered for Autopilot. In the Autopilot profile, choose the Convert all targeted devices to Autopilot option to automatically register non-Autopilot devices with the Autopilot deployment service. Allow 48 hours for the registration to be processed. When the device is unenrolled and reset, Autopilot will provision it.

    Does that get you what you want? If not, what’s missing?

  7. Extend the SCEP enrollment profile with additional Active Directory attributes

    At the moment only two user attributes (CN and UPN) are available to use in SCEP profiles. With our current MDM solution it is possible to use every AD attribute to request a certificate with this unique attribute. Both Intune and the other MDM solution are using the same SCEP server so it is possible. This seems like extending a table in Intune or using a text box with variables. We have the need to use ExtensionAttributes as the unique identifier for a certificate.

    149 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    8 comments  ·  Certs, Email , VPN, Wi-Fi  ·  Flag idea as inappropriate…  ·  Admin →

    AS of the week of April 23, 2018, you can use the OnPremisesSamAccountName the common name in a custom subject on an SCEP certificate profile. For example, you can use CN={OnPremisesSamAccountName}).

    As of Dec 11, when you create a SCEP certificate profile in Intune, you can now use the AAD_DEVICE_ID variable when you build the custom subject name. When the certificate is requested using this SCEP profile, the variable is replaced with the AAD device ID of the device making the certificate request.
    https://docs.microsoft.com/en-us/intune/whats-new

    I don’t think it gives you everything you want, but how close are we?

  8. Add help option for each device setting

    When configuring the device settings the meaning and impact of the options are not always clear at first sight. Especially for the target group school administrators who are often IT skilled teachers. A help section/link with a detailed explanation per setting would be very helpful.

    16 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Intune for Education  ·  Flag idea as inappropriate…  ·  Admin →

    Hi, Liz on our EDU team posted this comment:

    Hello- I am a member of the Intune for Education product team. We’ve recently added more tooltips next to settings in the console to help users quickly understand what each device setting does. For more in depth descriptions of all settings visit: https://docs.microsoft.com/en-us/intune-education/all-edu-settings-windows

    Does that get you enough help options on the device settings? If not, post a comment and let Liz know what we are missing!

  9. Improvements for Enrollment Status Page

    Although the Enrollment Status Page which is currently in Preview is a significant improvement, in my opinion it would benefit from an additional level of detail.

    For example, it currently shows "Apps (x of Y installed)".

    I currently have a device which is stuck on one of the Apps, unfortunately there is no additional "Details" button for each of the categories that allows me to see *which* app the Enrollment is stuck on.

    2 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Troubleshooting  ·  Flag idea as inappropriate…  ·  Admin →
  10. Remotely uninstall specific app(s) from a particular device

    It is now possible to perform app selective wipe but this function is for Microsoft apps only. It is also possible to uninstall a specific app from all devices. However, there is no way to select specific apps to uninstall from a particular device. This feature is useful for troubleshooting app installation or to force-install for only one device/user.

    81 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    12 comments  ·  Apps config and deployment  ·  Flag idea as inappropriate…  ·  Admin →

    As of the week of Nov 26, 2018, you can remove any app on corporate-owned supervised iOS devices. You can remove any app by targeting either user or device groups with an Uninstall assignment type. For personal or unsupervised iOS devices, you will continue to be able to remove only apps that were installed using Intune.

    Does this fill the request, or do you need to be able to remove apps on personal or unsupervised devices?

  11. Assign all devices in a dynamic group to a device category

    It would be great if we could assign devices to a category based on their dynamic group assignment. We have a naming convention for all of our Windows PCs that we can create a Dynamic Device group to query that name and since we know that devices that follow that convention are always going to be company-owned Windows 10 devices, we would like to be able to assign every device in that group to our "Corporate Windows 10" Device Category.

    10 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Azure Admin Console  ·  Flag idea as inappropriate…  ·  Admin →
  12. View Stream videos

    I can’t watch MS Stream videos in the managed browser!

    2 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Managed Browser  ·  Flag idea as inappropriate…  ·  Admin →
  13. Option to force users to accept terms and conditions each time they enroll a new device.

    Currently, once a user accepts the deployed Terms and Conditions across one of their enrolled devices, they will not be required to accept the Terms and Conditions again on any of their other devices.

    From https://docs.microsoft.com/en-us/intune/terms-and-conditions-create:
    "Users only have to accept updated terms and conditions once. Users with multiple devices don't have to accept terms and conditions on each device."

    This is a request to create the option to force users to accept deployed terms and conditions each time they enroll a new device, even if they have already accepted them on the first device they have enrolled.

    47 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    3 comments  ·  Company Portal (all platforms)  ·  Flag idea as inappropriate…  ·  Admin →
  14. Register Windows AutoPilot devices direclty in the Intune Azure Portal

    Since there is a management portal for AutoPilot devices in Intune it would be great if we could register the devices directly there. Instead of using the Microsoft Store for Business and then using the sync, which is only manual at the moment.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Autopilot/Windows enrollment  ·  Flag idea as inappropriate…  ·  Admin →

    As of the October 2018 release, you can apply Autopilot profiles to enrolled Win 10 devices that have not already been registered for Autopilot. In the Autopilot profile, choose the Convert all targeted devices to Autopilot option to automatically register non-Autopilot devices with the Autopilot deployment service. Allow 48 hours for the registration to be processed. When the device is unenrolled and reset, Autopilot will provision it.

    Does that get you what you want?

  15. Monitoring of Intune

    SCOM Management Pack or Tool to have insight into the environment. I don’t want to have to create distributed applications within SCOM. We would like monitoring of Conditional Access, Device Communication, etc. I want something pre-packaged where I can view the Hopkins specific Intune\SCCM infrastructure using a dashboard or console. Example of the types of information below that would be valuable to Enterprise organizations:
    Proactively Monitor Full Mobile Transactions Across Your Infrastructure
    • Monitor all service quality and performance in real-time across backend systems, mobile servers, NOCs, carrier networks and devices
    • Get a 360 view across all your infrastructure …

    21 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Azure Admin Console  ·  Flag idea as inappropriate…  ·  Admin →
  16. Allow organizations to remove the full wipe option from non-company owned devices

    Allow an organization to define user-owned devices and remove the ability to perform full wipes on those devices.

    52 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    8 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  17. Setup a notification message for intune to inform system admins about the expiry date of Apple APN certificate.

    Allowing the Apple iOS APN certificate to expire causes a lot of headache to system Admins, the users will have to enroll devices again. so there should be a notification option to remind admins to renew. and the notification (email, SMS, popup notice,...) should occur at least a month in advance.

    14 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  18. Add a policy to prevent device unenrollment from Company portal

    Companies provide devices to their employees and generally wants to make sure that these devices will always remain managed through Intune. It could be interesting to have a policy that prevent users to unenroll a device identified as a company device from the Intune company portal.

    721 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    74 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →

    The PMs involved have been talking about how best to give you a way to disable the “remove device” action. They think rather than focusing on platform enrollment types (iOS, Android, Windows), they could allow you to disable based on corporate vs personal ownership. I said I’d ask if that would work for you. :-)

    Would that get you want you need?

  19. Allow blocking of iOS update

    I want the ability to block updating to the newest iOS version. I have users who don't listen when I send out an email blast to not update their devices but I still get users who either don't read or just ignore the email. I want the ability to set the highest version that I want available and to disable updating to the newest version until I release it. Same type of deal as when I have to approve Windows updates.

    195 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    16 comments  ·  iOS-specific  ·  Flag idea as inappropriate…  ·  Admin →

    I know it’s not a total, perpetual block, but as of the week of August 27 you can configure the days and times when you don’t want devices to install any updates. In a future update, you’ll be able to delay when a software update is visibly shown on the device, from one to 90 days.

    When we deliver the 90-day delay, is that good enough to call this complete? As @Daniil points out, that’s what’s Apple is offering now. And it’s not great to get yourself too out of date with updates.

  20. Prevent apps to be uninstalled

    Some mobile apps could be required by the company as mandatory on the device (antivirus for instance). Having a feature that could prevent user to uninstall some application could help on a better user support.

    27 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    4 comments  ·  Apps config and deployment  ·  Flag idea as inappropriate…  ·  Admin →

    As of the week of April 23, 2018, If an end user uninstalls a required app, Intune automatically reinstalls the app within 24 hours rather than waiting for the 7 day re-evaluation cycle. It’s not exactly preventing the uninstall, but is it close enough that we can call it complete?

← Previous 1
  • Don't see your idea?

Feedback and Knowledge Base