Microsoft

Microsoft Intune Feedback

Suggestion box powered by UserVoice

Ideas

What features would you like to see?

All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Microsoft Intune, though we can’t promise to reply to all posts.

Standard Disclaimer – our lawyers made us put this here ;-) We have partnered with UserVoice, a third-party service, so you can give us feedback. Please note that the Microsoft Intune feedback site is moderated and is a voluntary participation-based project. Please send only feature suggestions and ideas to improve Microsoft Intune. Do not send any novel or patentable ideas, copyrighted materials, samples or demos. Your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy, including the license terms.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Automatically deploy Intune PC Client for Azure AD joined computers

    Not entirely sure if this belongs here, or in Azure AD, however....

    From reading the documentation, it appears that the for Windows 10 Enterprise PCs, they can be managed automatically upon joining the Azure AD domain as mobile devices only.

    For corporate issued PCs, it would aid SMBs greatly if adding the Intune PC Client can be done automatically upon joining the PC to Azure AD. This would lower IT department's involvement in issuing new devices, so that company administration could just buy (for example) a Surface Pro and hand it to a new employee, along with the Azure AD/Office…

    816 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    26 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  2. Windows 10 Upgrades (1511) via Intune

    The Windows 10 1511 Upgrade is not available via Intune. We use Intune as our Update Management platform (small business).

    I thought that the Windows update functionality in Intune should be like a WSUS in the Cloud. With peer-Distribution in Windows 10 and in Intune before it should be possible to not overload our Internet line.

    If this should not work by design then please Microsoft state clearly which of your products is designed for which Scenario.

    716 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    66 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →

    OK, seems clear that people still mean this suggestion for the PC client, not the MDM client, so setting the status to Noted.

    You can manage software updates (feature and quality) for Windows 10 devices managed by MDM using Windows Update for Business. And you can do peer downloading. Here are the docs for that.
    https://docs.microsoft.com/en-us/intune/windows-update-for-business-configure

    What’s keeping you using the PC client? Is it the operating system or are there still feature gaps you can’t live without on MDM?

  3. Intune Device Compliance Evaluation not stable (False/Positive)

    Intune Device Compliance sometime fails to evaluate the correct data.

    We set "Windows Firewall" to be a device compliance setting. The Windows Firewall is running fine but Intune fails to detect (False/Positive) with custom error message:

    -2016345612 (Syncml(500): The recipient encountered an unexpected condition which prevented it from fulfilling the request)

    We're also getting sometimes Issue with Evaluation of Bitlocker Settings.

    247 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    19 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  4. Disable Windows Hello on Windows Devices after Intune Enrollment

    There is no way of disabling Windows Hello after Intune enrollment, and when using mapped SMB shares and PIN logon, you always get prompted for a username/password to browse the folders.

    We need the ability to disable Windows Hello (PIN/bio-login), and force Password login on Windows devices already enrolled in Intune.

    238 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    12 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  5. Migrate Intune PC management into new Azure Intune portal

    Very cool that the Mobile portion has been migrate into the new Azure Intune portal.

    But what the current PC management?
    Why does it still require the old Silverlight portal?
    Bad experience to browse between 2 portal.

    Can you guys migrate everything into the new Azure Intune Portal?

    Please Intune Team, migrate the PC management portion into the new Azure Intune Portal for the benefit of your clients,

    83 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    5 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  6. Make it possible to migrate from Computer (intune agent) devices to MDM devices

    With the new Intune Portal within the Azure Portal the 'classic' Intune Agent gets more and more obsolete.

    I don't know when the intune agent will be end of life of if it wil be end of life. (maybe something to document?)

    I would like to see a possibility where the 'classic' intune agent gets uninstalled and the device gets enrolled in MDM (Intune MDM) automaticaly.

    So for example, I have 300 computer devices managed by Intune through the Intune Agent. I want these computers (that are in use) to be enrolled in MDM instead of the Intune Agent in…

    76 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    9 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  7. No auto-restart with logged on users for scheduled automatic updates installations

    Intune lacks the equivalent of the group policy setting "No auto-restart with logged on users for scheduled automatic updates installations".

    There are many mission critical environments where we're only able to force updates 1-day a month during a very specific maintenance window.

    With this setting, computers should only install updates after deadlines have passed and updates become mandatory.

    66 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    10 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  8. Remote Wipe Windows 10 PC's with Intune Client installed

    Currently if you install the Intune Client on a Windows 10 PC (other OS's as well perhaps, I haven't checked), you lose the ability to "Remote Wipe". The only option is to Retire the device.

    Intune Client should give full management to include Remote Wipe. What happens if one of my mobile users loses their device? I have no way of remotely wiping this. I know this can be achieved if they are "enrolled" rather than client, but why not same features?

    49 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  9. Intune device profile: password policy including special characters for desktop devices

    As stated in this MS article the password policy "Digits, lowercase letters, uppercase letters, and special characters" is not supported on Windows desktops at the moment:
    https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-devicelock#devicelock-mindevicepasswordcomplexcharacters

    Instead you get this error in the Intune device monitoring:
    -2016281112 (Remediation failed)
    ERROR CODE: 0x87d1fde8 - Remediation failed

    Please extend this feature for Windows desktops as well.

    36 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    4 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  10. Include BIOS information in Inventory Reports

    Currently when we run a Computer Inventory report, BIOS information and version are not included. Please include this information in Computer Inventory reports. This would give us a better report to identify which computers need BIOS updates without having to view the properties of each individual computer.

    26 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  11. Allow installs to be repaired

    Too often it seems that "one or more agents are not installed properly" on my client computers. The client computers don't seem to be aware of this though, as trying to install the software on them reports that the software is already installed.

    It would be nice to be able to "repair" an install of Intune without having to go through the whole process of uninstalling and re-installing the agents.

    20 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  12. Rotate Bitlocker Recovery Keys Periodically

    The device would be more secure if we have bitlocker key rotation option available at Intune Device configuration policies or by any other methods.

    13 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  13. Decrease the interval for detecting new updates and applications.

    Currently, the detection frequency for new apps and updates has a minimum value of 8 hours. This is very troublesome when enrolling PCs using group policy for the PC agent, as there is no real telling when the device will be fully updated and ready to use. The value ought to be configurable down to an "instantly" setting or at least to ½ hr.

    12 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  14. Noncompliant Apps Reports feature in an environment of PC management

    Although there is no update function of PC management by the agent , as in the case of the mobile device management , reporting functions of the non-compliant app I want to implement . Because it can issue a warning for the installation of apps that contrary to company policy , we believe that very convenient .

    12 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  15. Windows Update for Business (WUB) for PC Enrolled Devices

    Only MDM enrolled Windows 10 devices can currently be configured with the necessary settings for WUB (Windows Update for Business). It's not good-enough for this to just apply to MDM enrolled devices currently because MDM doesn't have feature parity yet with PC enrolled managemnt.

    It is just as important for Windows 10 PC enrolled devices to be able to utilize WUB instead of the traditional WSUS-like updating scheme that Intune PC Enrolled devices adhere to.

    In order for PC enrolled devices to participate in WUB, the Intune agent should control Windows 10s inbox Updating Client instead of using the Intune…

    11 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  16. Intune Agent: Request for a Progress bar or Status

    We're going to migrate 300 Clients to AAD and with Intune Client installed. All software will be installed through Intune.

    We ask you kindly to add a Progress bar or Status to the Intune Agent on "Updates" > "Try again" or somewhere else, so the User is able to see whether the agent is doing something or not.

    The current situation is, that employees are clicking "try again" over and over again and nothing seems to happen but in background intune is downloading, etc. Would be awesome if you could add this little thing as soon as possible.

    Thanks

    11 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  17. InTune Standalone Custom Scripts

    We are a smaller organization (under 1K machines) and are trying to use Intune Standalone to manage our PC fleet.

    With SCCM we used custom scripts to do multiple things but a big one was for custom software deployments.

    Currently Intune does not support this and I believe it would be a great feature to have moving forward.

    If not custom scripts support maybe some type of solution to accomplish the task.

    Thanks!

    8 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →

    I wanted to check in on this – in November we added the ability to manage PowerShell scripts in Intune for Windows 10 devices
    The Intune management extension lets you upload PowerShell scripts in Intune to run on Windows 10 devices. The extension supplements Windows 10 mobile device management (MDM) capabilities and makes it easier for you to move to modern management. https://docs.microsoft.com/en-us/intune/intune-management-extension

    Does that get you want you want?

  18. Endpoint Protection Alerts

    It would be nice to have the critical alerts for endpoint protection send an email to the effected user when a issue is detected.

    7 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  19. Windows 10 policy item to set Logon Disclaimer

    An InTune policy item which allows you to set the legalnoticecaption and legalnoticetext group policy settings so that Intune managed mobile workstations display a logon disclaimer.

    7 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →
  20. manage personal computers as computers?

    I wish there was some kind of support for Intune to manage personal computers as computers. I run a computer repair shop and I see lots of people falling for these scams involving overseas people offering remote managed services, but instead of offering real services, they just install fake AV software and spyware, and charge big money for it too! I'd like to offer a legitimate service that includes managed AV and "light" system monitoring (health status), and Intune seems to include this, but only for Pro versions of Windows. Can Intune not run in a limited fashion on Home…

    7 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Microsoft Intune
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →

    Hey, an update on this –
    Windows 10 Home does support very limited MDM capabilities. Intune is able to manage Windows 10 Home. Many of the CSPs (configuration service providers) are disabled on Home version, and if Intune tries to push these to Home devices, these CSPs will fail. This is by design.

    I’m not marking it “complete” because you’re saying “manage personal computers as computers” and this would really be “manage personal computers as mobile devices.” But in case this helps you at all, here you go.

← Previous 1 3 4 5
  • Don't see your idea?

Feedback and Knowledge Base