Microsoft

Microsoft Endpoint Manager Intune Feedback

Suggestion box powered by UserVoice - Update: Microsoft will be moving away from UserVoice sites on a product-by-product basis throughout the 2021 calendar year. We will leverage 1st party solutions for customer feedback. Learn more

Ideas

What features would you like to see?

All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Microsoft Endpoint Manager Intune, though we can’t promise to reply to all posts.

Standard Disclaimer – our lawyers made us put this here ;-) We have partnered with UserVoice, a third-party service, so you can give us feedback. Please note that the Intune feedback site is moderated and is a voluntary participation-based project. Please send only feature suggestions and ideas to improve Intune. Do not send any novel or patentable ideas, copyrighted materials, samples or demos. Your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy, including the license terms.


  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Managed Apps reporting in device properties

    It would be great if you would see only the Managed Apps that are applicable for a specific OS in the device properties. Now we see for instance Android apps targeted to user groups also in the user's Windows device properties.

    This is confusing for IT staff and would be nice if we would only see the Managed Apps that are applicable to the specific OS or at least have the status reported as Not-applicable.

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Inventory (all platforms)  ·  Flag idea as inappropriate…  ·  Admin →
  2. Force application install and/or re-install from portal

    As we notice an app installation failure from the portal and the managed apps for the device we'd like a simple function to force the application to install from the portal. Rather than having the user wait for next cycle of "required apps" checking.

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Apps config and deployment  ·  Flag idea as inappropriate…  ·  Admin →
  3. Log Analytics-intune

    log analytics- add intune app data and device configuration policy data so that we can create dashboards to show for groups of users what apps they have installed and for those same groups of users the compliance policy status.

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
  4. Samsung KME API for Intune

    We are in the process of moving to Android Enterprise in Intune and have stumbled across a number of issues. One of them is not being able to effectively separate AE DO devices to AE Kiosk mode device, due to using dynamic device groups.
    This is mostly to do with the device types being the same for both the standard and the kiosk build. There is no identifier that can be used to distinguish between the two if using dynamic device groups.
    The only possible way to do this is to manage the kiosk devices manually via an assigned group.…

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Android-specfiic  ·  Flag idea as inappropriate…  ·  Admin →
  5. Ability to decrypt SD card from Intune Portal

    We enforce SD card encryption on our company mobile devices. This becomes a problem when a device is swapped out, and Samsung Knox Enrolment is used. Typically pre KME, we would advise the users in this scenario to remove company portal from old device which would then remove all policies and allow decryption which can then be moved to new device.
    However with KME the enrolment enforcement kicks in and a user is unable to go into the menus on an un-enrolled device. We would benefit from a button press from console if this were possible.

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Android-specfiic  ·  Flag idea as inappropriate…  ·  Admin →
  6. Ability to set preinstall/postinstall scripts to pkg installations

    It would be helpful if there was the ability to specify pre/post installation scripts for LOB applications.

    This would need to work in conjunction with the "Microsoft Intune App Wrapping Tool for macOS" so the scripts are included in the "intunemac" package.

    Scripts could be used to setup an environment that a PKG may need to install certain applications or make most installation setting changes that allow for a smoother silent installation and a better user experience.

    ex:
    - Cylance Protect looks for an installation token in a file. Otherwise it prompts the user after installation.
    - Changing default preferences…

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  MacOS-specific  ·  Flag idea as inappropriate…  ·  Admin →
  7. Allow only Azure AD devices

    Block registering azure ad register and allow only azure ad joining without blocking personal devices

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Autopilot/Windows enrollment  ·  Flag idea as inappropriate…  ·  Admin →
  8. unable to use edge unless signed in

    would like the policies to be applied to the device and they arent unless the user is signed into the browser, I want the ability for the user to be forced to sign in so that they get the policies sent to the browser for management

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
  9. Endpoint Manager still has references to Intune

    Before forcing everyone to move to Microsoft Endpoint Manager, you should have had someone go through and do a find and replace for Intune.

    There are still numerous references to Intune in the Microsoft Endpoint Manager Console.

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Admin Console  ·  Flag idea as inappropriate…  ·  Admin →
  10. Support optional install for device groups

    We'd like to see support for optional app deployment based on device groups. The scenario we have is any device that is considered Corporate owned, personal enabled (COPE) would be eligible to download certain software. By restricting optional to user groups we open the possibility for end-users to install software on shared devices where we don't want certain software to live. We had a user install a VPN client on a computer they were using temporarily that should not have been eligible for VPN client install.

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Apps config and deployment  ·  Flag idea as inappropriate…  ·  Admin →
  11. profile wifi android enterprise set proxy

    Add proxy option for wifi profiles in Android Enterprise Fully managed

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Certs, Email , VPN, Wi-Fi  ·  Flag idea as inappropriate…  ·  Admin →
  12. Add text to Article clarifying the Boolean option for App Configuration Policies

    Update the following document to clarify how to use Boolean option for App Configuration Policies.

    I had to contact Support to find out how to use the Boolean option for an app.

    Apparently Intune(Microsoft Endpoint Manager) requires the Configuration value for the Boolean Operator to be true (instead of True).

    This information should be contained in the article below so that people do not have to contact support to discover this.

    The article below does not state that the entry is case sensitive for Boolean operators (true or True). Add this information to the article to assist customers in the…

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Apps config and deployment  ·  Flag idea as inappropriate…  ·  Admin →
  13. Display mac address in columns configuration

    In Devices > All Devices - Columns

    Allow the possibility to select Ethernet MAC to display devices MAC address in the device list (without using Intune Data Lake nor Power BI, please).

    For the moment there is Wi-Fi MAC only.

    Thanks

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Admin Console  ·  Flag idea as inappropriate…  ·  Admin →
  14. Enable Location Sharing on Dedicated devices

    We need to be able to enable Location Sharing on kiosk devices. This is supported in the Android OS https://developers.google.com/android/work/requirements#4.16.-advanced-location-sharing-management_1. These aren't user owned devices nor assigned to single users so privacy shouldn't be of concern

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Android-specfiic  ·  Flag idea as inappropriate…  ·  Admin →
  15. macOS Wired network profile does not support PKCS certificate profile

    For macOS wired network profile, it seems it does not support PKCS certificate profile, only SCEP profile:
    https://docs.microsoft.com/en-us/mem/intune/configuration/wired-network-settings-macos

    Certificates: Select the SCEP client certificate profile that's also deployed to the device. This certificate is the identity presented by the device to the server to authenticate the connection. PKCS certificates aren't supported.

    We need this to support PKCS as for some environments, they do not use SCEP and only use PKCS.

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Certs, Email , VPN, Wi-Fi  ·  Flag idea as inappropriate…  ·  Admin →
  16. Malware detection reports not accurate

    Malware detection data under Endpoint Security > Antivirus > Windows 10 detected malware is not accurate. Devices report that files are cleaned and harmful files were quarantined, blocked, or removed, but Endpoint Protection portal does not even after 24 hours.

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Endpoint Security Policies  ·  Flag idea as inappropriate…  ·  Admin →
  17. Azure Virtual Desktop Intune support

    The Azure Virtual Desktops must be joined to the hybrid environment to use Intune. We are cloud only customers and looking for Intune support for only Azure AD joined devices.

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Autopilot/Windows enrollment  ·  Flag idea as inappropriate…  ·  Admin →
  18. Microsoft Tunnel Third Party MDM (Jamf)

    It would be very beneficial to have third party MDM support for Microsoft Tunnel such as Jamf. Even if there was documentation on how to set up the correct VPN profile with a third party MDM.

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  iOS-specific  ·  Flag idea as inappropriate…  ·  Admin →
  19. Device and User Install Status - Display stats regardless of assignments

    Application install status should display state of install regardless of assignments.
    It is extremely annoying that when an assignment is installed, we lose this information.

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Admin Console  ·  Flag idea as inappropriate…  ·  Admin →
  20. Support Feature Update Rings for Autopilot Devices

    Until a device registers with the MSFT Update service for the Feature Update Rings (Preview), we run the risk of Autopilot devices updating to the latest Feature Update even if the ring is frozen at a previous Feature Update build. I assume this is because the regular update rings must be set to 0 for the Feature Updates and the device can request that feature update before being fully registered. Would be great to have this working otherwise the Feature Update rings cannot be successfully relied upon for Autopilot devices.

    0 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Windows Updates  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Feedback and Knowledge Base