Microsoft

Microsoft Intune Feedback

Suggestion box powered by UserVoice

Ideas

What features would you like to see?

All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Microsoft Intune, though we can’t promise to reply to all posts.

Standard Disclaimer – our lawyers made us put this here ;-) We have partnered with UserVoice, a third-party service, so you can give us feedback. Please note that the Microsoft Intune feedback site is moderated and is a voluntary participation-based project. Please send only feature suggestions and ideas to improve Microsoft Intune. Do not send any novel or patentable ideas, copyrighted materials, samples or demos. Your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy, including the license terms.

How can we improve Microsoft Intune

You've used all your votes and won't be able to post a new idea, but you can still search and comment on existing ideas.

There are two ways to get more votes:

  • When an admin closes an idea you've voted on, you'll get your votes back from that idea.
  • You can remove your votes from an open idea you support.
  • To see ideas you have already voted on, select the "My feedback" filter and select "My open ideas".
(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can support and comment on it.

If it doesn't exist, you can post your idea so others can support it.

Enter your idea and we'll search to see if someone has already suggested it.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. CSP Power XML Examples

    Currently the Microsoft Article https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-power does not provide examples of the Power Options aka templates for end customer use. There are reference to generic examples via the link: https://docs.microsoft.com/en-us/windows/client-management/mdm/understanding-admx-backed-policies but nothing that shows clear syntax and proper syntax for the Power options. Please adjust the documentation to include these if possible.

    15 votes
    Vote
    Sign in
    Check!
    (thinking…)
    Reset
    or sign in with
    • sso
    • facebook
    • google
      Password icon
      Signed in as (Sign out)
      You have left! (?) (thinking…)
      0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
    • Clarity on how to use/handle Compliance vs Configuration vs Hello for Business settings

      Today, in Intune standalone, there are multiple locations you can configure many items for Windows 10. One such example is password.

      If we look at password, you can set password restrictions or requirements in the compliance policy, and these are enforced. But you can also specify these as a configuration profile. There's also similar settings in Windows Hello for Business.

      As an admin, I'm not sure which take priority, or how to best utilise these settings in harmony.

      Another example is Bitlocker - there's a compliance policy, and also configuration profile. On this occasion, compliance doesn't actually enforce, it just…

      13 votes
      Vote
      Sign in
      Check!
      (thinking…)
      Reset
      or sign in with
      • sso
      • facebook
      • google
        Password icon
        Signed in as (Sign out)
        You have left! (?) (thinking…)
        0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
      • provide better guides and best practices

        I have spent days getting my head around how to add devices using the new (non-silverlight) interface. Documentation for the nuts and bolts, step by step real world use of the product truly sucks. Sorry. Even the basic procedure for adding devices and users is a trial and error experience at best. Do we use the CompanyPortal app or the website? Which user should enroll the device in Azure AD? Which user should do the MDM? To add insult injury, virtually every YouTube, Lynda.com and Pluralsight video online is for the old Silverlight interface.

        It's a great product. Now if…

        13 votes
        Vote
        Sign in
        Check!
        (thinking…)
        Reset
        or sign in with
        • sso
        • facebook
        • google
          Password icon
          Signed in as (Sign out)
          You have left! (?) (thinking…)
          1 comment  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
        • Update Hybrid Cloud Printing Documentation

          Update the Hybrid Printing Documentation to refelct actuall setup process, as current docuemntation does not advise on nececary steps:

          -Mention that to pubish a printer you need a windows 10 device, not server and a dedicated service account. Othewise you get OAuth errors.

          -Update App Proxy App setup to refect that you only need to make 2 apps not 4.

          -Inform that the published printers do not have the preferences, for example colour/black and white or size like a4, a3 etc.

          None of this is part of the original documentaiton, and if you actually follow the documentation it does not…

          6 votes
          Vote
          Sign in
          Check!
          (thinking…)
          Reset
          or sign in with
          • sso
          • facebook
          • google
            Password icon
            Signed in as (Sign out)
            You have left! (?) (thinking…)
            0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
          • Email access is delayed for 1-3 hours when enrolling in Company Portal app and conditional access in Intune.

            Setup:
            - Conditional Access with Exchange On Premise
            - Default Access rule set to "Block"
            - Configuration Policy that configures the email client on iOS/Android

            After enrollment, it takes 1 - 3 hours for the device to become 'unblocked / access granted' in Exchange.
            This makes staging of the devices very difficult as we need the username/pass during enrollment & we can only start showing the email functionality after several hours.

            This is not mentioned in the documentation (as a matter of fact, the documentation states that it should be unblocked within 2 minutes). MS Support confirmed this is indeed…

            6 votes
            Vote
            Sign in
            Check!
            (thinking…)
            Reset
            or sign in with
            • sso
            • facebook
            • google
              Password icon
              Signed in as (Sign out)
              You have left! (?) (thinking…)
              0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
              noted  ·  Nbigman MSFT responded

              This suggestion has been passed along to the documentation team.

            • precedence and priority for conditional access controls. When compliance, MFA, and Hybrid Azure AD join are all checked – how does Intune de

              One of my questions, that I’ve never been able to get answered, it’s not in the Microsoft documentation, is the question of precedence and priority for conditional access controls. When compliance, MFA, and Hybrid Azure AD join are all checked – how does Intune determine which one is to be applied? If MFA is checked, will it always be presented to the user, or will it not be used when a device is compliant? What logic is used? Sadly the documentation is lacking for this.

              Please answer this question and help with documentation.

              4 votes
              Vote
              Sign in
              Check!
              (thinking…)
              Reset
              or sign in with
              • sso
              • facebook
              • google
                Password icon
                Signed in as (Sign out)
                You have left! (?) (thinking…)
                0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
              • Trusted IP Address has Changed

                OK, so Microsoft kind of revamped the way Trusted IP Address and MFA IP Addresses work in Intune / Azure AD.

                There is Zero (0) notes on the release of this change that I can find anywhere.

                So far as I can find there is Zero (0) documentation on how this functionality works.

                Please provide updated documentation on Conditional Access Rules.
                How to add the IP Addressing.
                How the functionality of the Trusted IP Addresses tick box works and functions.

                BTW, we are having an issue with some configuration, this may be the issue!

                4 votes
                Vote
                Sign in
                Check!
                (thinking…)
                Reset
                or sign in with
                • sso
                • facebook
                • google
                  Password icon
                  Signed in as (Sign out)
                  You have left! (?) (thinking…)
                  0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                • Sample configuration policy for Android for work in mircosoft intune

                  Hi Supporter,
                  When we read the configuration policy of IOS i saw the sample config and follow it. But when reading the similar on Android for work i don't see the sample, could you help me sample configuration ?

                  4 votes
                  Vote
                  Sign in
                  Check!
                  (thinking…)
                  Reset
                  or sign in with
                  • sso
                  • facebook
                  • google
                    Password icon
                    Signed in as (Sign out)
                    You have left! (?) (thinking…)
                    4 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                  • explain the logic used when two conflicting policies or profiles are landing on the same Win10 device

                    I cannot currently find any documentation which explains the logic used by Intune (or what I could do to infer it) when two conflicting policies or profiles are ultimately landing on the same Windows 10 device. What determines which one wins? How is this resolved? Is there a general rule of thumb? Ultimately my goal is predictable outcomes but Intune is a bit of a black box on this topic currently so that's difficult to achieve.

                    3 votes
                    Vote
                    Sign in
                    Check!
                    (thinking…)
                    Reset
                    or sign in with
                    • sso
                    • facebook
                    • google
                      Password icon
                      Signed in as (Sign out)
                      You have left! (?) (thinking…)
                      0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                    • Standardize Parameter Names, Tooltips, Documentation, and Setting Value Choices

                      Develop and adopt a policy to:

                      1. Ensure consistency among CSP Name, ADMX GP Name, INTUNE parameter name. A good name reflects what the parameter is intended to accomplish when enabled/allowed/set-to-True.

                      2. Ensure consistency among the INTUNE tooltip, CSP Documentation, ADMX documentation. Create a standardized syntax or structure for each to ensure accurate, consistent information.

                      3. Ensure consistency among INTUNE setting choices, CSP setting values, ADMX setting values and the effect of each. Good, consistent setting choices means, to me, Enable = Allow = True; Disable = Block = False; Not Configured = Not Configured = Not Configured.

                      3 votes
                      Vote
                      Sign in
                      Check!
                      (thinking…)
                      Reset
                      or sign in with
                      • sso
                      • facebook
                      • google
                        Password icon
                        Signed in as (Sign out)
                        You have left! (?) (thinking…)
                        0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                      • Intune App Wrapping iOS

                        Clarification Question for this Microsoft Doc: https://docs.microsoft.com/en-us/intune/app-wrapper-prepare-ios

                        When wrapping the iOS app via Intune App Wrapping, does the wrapping not change the App IDs and can only wrap working apps with matching provisioning profiles?

                        3 votes
                        Vote
                        Sign in
                        Check!
                        (thinking…)
                        Reset
                        or sign in with
                        • sso
                        • facebook
                        • google
                          Password icon
                          Signed in as (Sign out)
                          You have left! (?) (thinking…)
                          0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                        • Guide on how to migrate from an existing MDM solution

                          We are looking to migrate from an established MDM solution to Intune. Intune takes a different approach to device management than most MDMs, so some guidance on how to migrate away from an established MDM solution to Intune would be helpful. I understand all MDMs are different in some ways, so a specific guide detailing how to migrate away from a particular MDM solution is not practical, but some overall guidance about how to convert policies and configurations, apps (public and in-house developed) and setting up permissions models would be a good place to start.

                          1 vote
                          Vote
                          Sign in
                          Check!
                          (thinking…)
                          Reset
                          or sign in with
                          • sso
                          • facebook
                          • google
                            Password icon
                            Signed in as (Sign out)
                            You have left! (?) (thinking…)
                            0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                          • I'd like a profile settings Export option, the current Export on the profiles list is not very useful.

                            I would like to be able to export the settings from profiles in one tenant and easily import them into another. This would also be good for documenting a deployment, so that you have a baseline to work from, Can you add this functionality?

                            1 vote
                            Vote
                            Sign in
                            Check!
                            (thinking…)
                            Reset
                            or sign in with
                            • sso
                            • facebook
                            • google
                              Password icon
                              Signed in as (Sign out)
                              You have left! (?) (thinking…)
                              0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                            • Conflict resolution workflow

                              Ensure when conflicts are identified -- whether during configuration or monitoring -- that a resolution workflow is presented with appropriate decision support guidance.

                              1 vote
                              Vote
                              Sign in
                              Check!
                              (thinking…)
                              Reset
                              or sign in with
                              • sso
                              • facebook
                              • google
                                Password icon
                                Signed in as (Sign out)
                                You have left! (?) (thinking…)
                                0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                              • Polices and Profile Settings Workbook

                                Please publish a polices and profile settings workbook. This would be instrumental in helping customers understand and design their new Intune environments.

                                1 vote
                                Vote
                                Sign in
                                Check!
                                (thinking…)
                                Reset
                                or sign in with
                                • sso
                                • facebook
                                • google
                                  Password icon
                                  Signed in as (Sign out)
                                  You have left! (?) (thinking…)
                                  0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                                • doc that some features work only if you have Windows Enterprise edition

                                  In documentation for Intune for device restriction policy, app store restriction, there is no information that some of the features apply only if you have Windows Enterprise edition. So you create a policy and it wont give you any information, just don't work as you expect to according to documentation.

                                  1 vote
                                  Vote
                                  Sign in
                                  Check!
                                  (thinking…)
                                  Reset
                                  or sign in with
                                  • sso
                                  • facebook
                                  • google
                                    Password icon
                                    Signed in as (Sign out)
                                    You have left! (?) (thinking…)
                                    0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                                  • Ensure each Assignment control explicitly indicates if it’s intended to be assigned to User or Device.

                                    Ensure each Assignment control explicitly indicates if it’s intended to be assigned to User or Device.

                                    Arrange settings applicable to Users into a User Configuration profile blade.

                                    Arrange settings applicable to Devices into the Device Configuration blade.

                                    Currently, they are jumbled together and require admin to evaluate “context.” Separating them will reduce incidence of inappropriate assignments.

                                    1 vote
                                    Vote
                                    Sign in
                                    Check!
                                    (thinking…)
                                    Reset
                                    or sign in with
                                    • sso
                                    • facebook
                                    • google
                                      Password icon
                                      Signed in as (Sign out)
                                      You have left! (?) (thinking…)
                                      0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                                    • Provide overview about App PIN groups, SSO and SLO capabilities per app

                                      We enforce App PIN via Intune MAM. Also we'd like to have Single-Sign-On and Single-Log-Off across all managed apps. There is no overview showing which app supports what.

                                      Regarding the App PIN e.g. Word, Excel and PowerPoint share a common PIN but the Yammer app uses a different one. Why do we need to find that out in own tests instead of it being documented?

                                      1 vote
                                      Vote
                                      Sign in
                                      Check!
                                      (thinking…)
                                      Reset
                                      or sign in with
                                      • sso
                                      • facebook
                                      • google
                                        Password icon
                                        Signed in as (Sign out)
                                        You have left! (?) (thinking…)
                                        0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                                      • AAD device enrollment restriction applied to an Intune DEM

                                        We have noticed that an Intune DEM user still falls within the AAD device enrollment restriction. Is there a step missing in the instructions to add the Intune DEM into a specific group which has unlimited AAD enrollment?
                                        https://docs.microsoft.com/en-us/intune-classic/deploy-use/enroll-corporate-owned-devices-with-the-device-enrollment-manager-in-microsoft-intune

                                        1 vote
                                        Vote
                                        Sign in
                                        Check!
                                        (thinking…)
                                        Reset
                                        or sign in with
                                        • sso
                                        • facebook
                                        • google
                                          Password icon
                                          Signed in as (Sign out)
                                          You have left! (?) (thinking…)
                                          0 comments  ·  Documentation  ·  Flag idea as inappropriate…  ·  Admin →
                                        • Don't see your idea?

                                        Feedback and Knowledge Base