Microsoft

Microsoft Intune Feedback

Suggestion box powered by UserVoice

Ideas

What features would you like to see?

All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Microsoft Intune, though we can’t promise to reply to all posts.

Standard Disclaimer – our lawyers made us put this here ;-) We have partnered with UserVoice, a third-party service, so you can give us feedback. Please note that the Microsoft Intune feedback site is moderated and is a voluntary participation-based project. Please send only feature suggestions and ideas to improve Microsoft Intune. Do not send any novel or patentable ideas, copyrighted materials, samples or demos. Your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy, including the license terms.

How can we improve Microsoft Intune

You've used all your votes and won't be able to post a new idea, but you can still search and comment on existing ideas.

There are two ways to get more votes:

  • When an admin closes an idea you've voted on, you'll get your votes back from that idea.
  • You can remove your votes from an open idea you support.
  • To see ideas you have already voted on, select the "My feedback" filter and select "My open ideas".
(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can support and comment on it.

If it doesn't exist, you can post your idea so others can support it.

Enter your idea and we'll search to see if someone has already suggested it.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Let users choose their Windows 10 Update for Business Ring

    Here's an idea: Let users pick their preferred update ring themselves. This way the user is in control of how soon the quality and feature updates are rolled out to their devices.

    0 votes
    Vote
    Sign in
    Check!
    (thinking…)
    Reset
    or sign in with
    • sso
    • facebook
    • google
      Password icon
      Signed in as (Sign out)
      You have left! (?) (thinking…)
      0 comments  ·  Windows-specific  ·  Flag idea as inappropriate…  ·  Admin →
    • Manage iOS Message History settings

      Need ability to manage the iOS Message History settings, which are-- 30 Days, 1 Year, Forever.

      0 votes
      Vote
      Sign in
      Check!
      (thinking…)
      Reset
      or sign in with
      • sso
      • facebook
      • google
        Password icon
        Signed in as (Sign out)
        You have left! (?) (thinking…)
        0 comments  ·  iOS-specific  ·  Flag idea as inappropriate…  ·  Admin →
      • MAM Without Enrollment - Policy to apply as soon as user is authenticated on Outlook, currently allows for bypass

        So a user enters their credentials and their mailbox is pulled down onto the device. Currently it takes nearly 5 - 8 hours for the policy to then apply to the Outlook app on the users device so there is a period of risk where the device has no policy is applied. Further to this, this can be used to bypass the policy, as the user can just remove the account which removes the policy and then simply add the account again which gives them another 5 - 8 hours of uncontrolled access.

        0 votes
        Vote
        Sign in
        Check!
        (thinking…)
        Reset
        or sign in with
        • sso
        • facebook
        • google
          Password icon
          Signed in as (Sign out)
          You have left! (?) (thinking…)
          0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
        • Workfolders support for andriod for work

          Currently workfolders cannot be configuered on andriod for work profile. Would like to enable it

          0 votes
          Vote
          Sign in
          Check!
          (thinking…)
          Reset
          or sign in with
          • sso
          • facebook
          • google
            Password icon
            Signed in as (Sign out)
            You have left! (?) (thinking…)
            0 comments  ·  Android-specfiic  ·  Flag idea as inappropriate…  ·  Admin →
          • Remove requirement for invite to Apple VPP program and prompt for Apple ID for user licensing

            You should be able to deploy an app to a user group and on supervised corporate devices...not have it prompt for an invite to the VPP program or an Apple ID.

            0 votes
            Vote
            Sign in
            Check!
            (thinking…)
            Reset
            or sign in with
            • sso
            • facebook
            • google
              Password icon
              Signed in as (Sign out)
              You have left! (?) (thinking…)
              1 comment  ·  Apps (all platforms)  ·  Flag idea as inappropriate…  ·  Admin →
            • App protection Policies

              The App Protection policies need work. If I create an App Protection Policy that uses whether a device is enrolled or not as a condition, this doesn't work as you would expect.

              This should look simply at whether or not a device is tied to an MDM at the least, or enrolled in Intune itself.

              To make this work, you have to install the Company Portal app, which after logging in, sees right away that the phone is enrolled and even displays the date and time. This is not enough for the App Protection Policy however.

              You then have to…

              0 votes
              Vote
              Sign in
              Check!
              (thinking…)
              Reset
              or sign in with
              • sso
              • facebook
              • google
                Password icon
                Signed in as (Sign out)
                You have left! (?) (thinking…)
                0 comments  ·  Flag idea as inappropriate…  ·  Admin →
              • Vcard file open support in In tune manged outlook app

                Hi,

                When outlook app is manged through In tune portal user is not able to open vcard(.vcf) file received on email. Getting message "There are no apps on this device that your organisation allows to open this content. I already opened case with Microsoft support but, they are not able to give any workaround.

                Regards,
                Mahesh

                0 votes
                Vote
                Sign in
                Check!
                (thinking…)
                Reset
                or sign in with
                • sso
                • facebook
                • google
                  Password icon
                  Signed in as (Sign out)
                  You have left! (?) (thinking…)
                  0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
                • Restrict enrollment based on Device Manufacturer

                  We know that there is an option to restrict the device based on the platform . But we need an option where the devices can be restricted based on the device manufacturer. There are cases in which particular manufacturer device types affected by malware. In that case we need to restrict those device from Intune until Malware issues are resolved.

                  0 votes
                  Vote
                  Sign in
                  Check!
                  (thinking…)
                  Reset
                  or sign in with
                  • sso
                  • facebook
                  • google
                    Password icon
                    Signed in as (Sign out)
                    You have left! (?) (thinking…)
                    0 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
                  • consistancy is the mother of all mastery

                    hi,
                    after creating an application or compliance policy in Intune Preview I can choose Manage then Assignments then Select Groups to Assign it to users or groups

                    Inline image 1

                    In Intune legacy, I can Manage Deployment to Deploy the object to users/devices.

                    Inline image 2

                    In configmgr (hybrid) I can Deploy the app (or whatever) to users/devices etc...

                    Inline image 3

                    wouldn't it be nice if this was consistent in all platforms, and we used the same terminology to deploy apps and settings ?

                    changing it to 'Assignments' is just adding more confusion imho

                    cheers

                    0 votes
                    Vote
                    Sign in
                    Check!
                    (thinking…)
                    Reset
                    or sign in with
                    • sso
                    • facebook
                    • google
                      Password icon
                      Signed in as (Sign out)
                      You have left! (?) (thinking…)
                      0 comments  ·  Azure Admin Console  ·  Flag idea as inappropriate…  ·  Admin →

                      Noted, but I checked with Engineering and they opted to align with the Azure Active Directory terminology instead of the Configuration Manager terminology. Since they don’t expect many people to be switching back and forth, and Azure is the workflow path we’ve chose, we’re aligning there. I’ll leave this open, and call it noted, but it would take a huge vote count to even get them to consider this.

                    • Outlook Save Contacts should be in a container

                      Outlook for iOS allows you to save contacts to the local iOS contacts so we are able to see users information for incoming calls. The data should not be saved automatically to iCloud - this puts the corporate data outside of DLP and is a security issue.

                      0 votes
                      Vote
                      Sign in
                      Check!
                      (thinking…)
                      Reset
                      or sign in with
                      • sso
                      • facebook
                      • google
                        Password icon
                        Signed in as (Sign out)
                        You have left! (?) (thinking…)
                        0 comments  ·  App protection policies (APP/MAM)  ·  Flag idea as inappropriate…  ·  Admin →
                      • The Restart Countdown timer reports an incorrect time

                        I can request a restart of a managed computer device from the Intune Console. The user is prompted that a restart has been requested and a countdown time is displayed. Before this week, the countdown timer would display that the restart would occur automatically in 12:15:00 and start counting down. The actual restart would occur in 15 minutes. I reported this to support and was told it was a known issue to be fixed.

                        This week I tested again and the countdown timer started at 2:00:00 and began counting down (2 hours). I decided to wait to see how long…

                        0 votes
                        Vote
                        Sign in
                        Check!
                        (thinking…)
                        Reset
                        or sign in with
                        • sso
                        • facebook
                        • google
                          Password icon
                          Signed in as (Sign out)
                          You have left! (?) (thinking…)
                          1 comment  ·  Intune PC client  ·  Flag idea as inappropriate…  ·  Admin →

                          Hi, John, yes, we do read these, but it says in the last paragraph “it would be nice”, so I interpreted that as a suggestion. Rereading it, I realize that the second “it would be nice” might be a bug, but even then the next step to figure out if it is would be to open a support case. Which you already did. That is definitely the faster path – they have a service level agreement for responding to calls, but I can’t match that on UserVoice. Sorry if you were feeling ignored. But hopefully you got it fixed.

                        • 0 votes
                          Vote
                          Sign in
                          Check!
                          (thinking…)
                          Reset
                          or sign in with
                          • sso
                          • facebook
                          • google
                            Password icon
                            Signed in as (Sign out)
                            You have left! (?) (thinking…)
                            0 comments  ·  Apps (all platforms)  ·  Flag idea as inappropriate…  ·  Admin →
                          • Windows 10 tablet notifications CSP policy

                            There needs to be a way to control notifications specifically tablet notifications. Registry entry is this location. [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Notifications\Settings\Windows.System.Continuum]

                            0 votes
                            Vote
                            Sign in
                            Check!
                            (thinking…)
                            Reset
                            or sign in with
                            • sso
                            • facebook
                            • google
                              Password icon
                              Signed in as (Sign out)
                              You have left! (?) (thinking…)
                              0 comments  ·  Azure Admin Console  ·  Flag idea as inappropriate…  ·  Admin →
                            • Informational Up arrow

                              When clicking on a update, the information up arrow (right above remote tasks) at the bottom doesn't work or inconsistently works. It fails to show additional information and now just toggles.

                              0 votes
                              Vote
                              Sign in
                              Check!
                              (thinking…)
                              Reset
                              or sign in with
                              • sso
                              • facebook
                              • google
                                Password icon
                                Signed in as (Sign out)
                                You have left! (?) (thinking…)
                                1 comment  ·  Silverlight Admin Console  ·  Flag idea as inappropriate…  ·  Admin →

                                Hi, Cole, If the show\hide does not expand collapse the preview pane make sure you didn’t drag the size of the pane to the minimum. That can make it look like the preview pane isn’t working. If that’s not the case, can you repro this consistently? On more than one computer? Is it the same in all browsers?

                              • Split activation time and date into two separate columns in reporting

                                When running a report on all the users that have been added to Intune I see the EAS activation time column. Since that column has the date and then the time, unless you do some manipulation to the data in Excel you can't sort it by date of activation.

                                This could be easily fixed by splitting the columns into EAS Activation Date and EAS Activation Time.

                                0 votes
                                Vote
                                Sign in
                                Check!
                                (thinking…)
                                Reset
                                or sign in with
                                • sso
                                • facebook
                                • google
                                  Password icon
                                  Signed in as (Sign out)
                                  You have left! (?) (thinking…)
                                  0 comments  ·  Mobile Device Management (general)  ·  Flag idea as inappropriate…  ·  Admin →
                                • Push & Remove an AirPrint Profile based on office/location

                                  taken from Nick's comments on this one
                                  https://microsoftintune.uservoice.com/forums/291681/suggestions/8345325

                                  Geo-Fenced profiles would be really useful, the Camera scenario has been sited here a couple of times; I have a couple of other use cases.
                                  1. Printers - Pushing & Removing an AirPrint Profile based on office/location
                                  2. Screenlocks - Relaxing controls whilst in a secure location, say the screen lock timer to 60mins, but when the device leaves winding back up to 5mins.

                                  0 votes
                                  Vote
                                  Sign in
                                  Check!
                                  (thinking…)
                                  Reset
                                  or sign in with
                                  • sso
                                  • facebook
                                  • google
                                    Password icon
                                    Signed in as (Sign out)
                                    You have left! (?) (thinking…)
                                    0 comments  ·  Fencing - geo, time speed, etc  ·  Flag idea as inappropriate…  ·  Admin →
                                  • Conditional Access for PC Managed devices allowing EAS access.

                                    Conditional Access for PC Managed devices allowing EAS access would enable the use of the Mail app in Windows 8.1 and Windows 10.

                                    I've spoken with Intune Support and they've recommended enrolling the devices under MDM, but this isn't a reasonable expectation in many circumstances.

                                    0 votes
                                    Vote
                                    Sign in
                                    Check!
                                    (thinking…)
                                    Reset
                                    or sign in with
                                    • sso
                                    • facebook
                                    • google
                                      Password icon
                                      Signed in as (Sign out)
                                      You have left! (?) (thinking…)
                                      2 comments  ·  Conditional Access  ·  Flag idea as inappropriate…  ·  Admin →
                                    • Encryption field delay in reporting to Intune Admin Console

                                      There is a delay in the Intune admin reporting console that shows an encrypted device that does not have the Encryption field set to Yes and still showing as compliant. 24 hrs later the device will show as being encrypted for that field. This is too long of a delay.

                                      From Microsoft: Our escalation engineers have reviewed this issue and it is happening because some random latency in the reporting for that particular value. iOS devices are encrypted during enrollment, it means that Intune will always recognized the device as complaint once the device is enrolled and has a pin…

                                      0 votes
                                      Vote
                                      Sign in
                                      Check!
                                      (thinking…)
                                      Reset
                                      or sign in with
                                      • sso
                                      • facebook
                                      • google
                                        Password icon
                                        Signed in as (Sign out)
                                        You have left! (?) (thinking…)
                                        0 comments  ·  Enrollment (all platforms)  ·  Flag idea as inappropriate…  ·  Admin →
                                      • change screenlock settings based on location

                                        taken from Nick's comments on this one
                                        https://microsoftintune.uservoice.com/forums/291681/suggestions/8345325

                                        Geo-Fenced profiles would be really useful, the Camera scenario has been sited here a couple of times; I have a couple of other use cases.
                                        1. Printers - Pushing & Removing an AirPrint Profile based on office/location
                                        2. Screenlocks - Relaxing controls whilst in a secure location, say the screen lock timer to 60mins, but when the device leaves winding back up to 5mins.

                                        0 votes
                                        Vote
                                        Sign in
                                        Check!
                                        (thinking…)
                                        Reset
                                        or sign in with
                                        • sso
                                        • facebook
                                        • google
                                          Password icon
                                          Signed in as (Sign out)
                                          You have left! (?) (thinking…)
                                          0 comments  ·  Fencing - geo, time speed, etc  ·  Flag idea as inappropriate…  ·  Admin →
                                        • Ability to stop install of 'required' app if iOS incompatible - VPP

                                          Currently, Apps constantly try to install on device's which they aren't compatible on. For example, an app with min iOs Version 10.0 will keep trying to install on a device at v9.3. Or on an old iPad 2, Max v9.x

                                          This is not good when the apps are pushed as 'required' and it is from 'out-of-box'. And if the user does not have or want an Apple ID, this cannot be changed.

                                          If you add an app normally (non-cpp) this is an option, but not an option for VPP apps as far as I can see.

                                          0 votes
                                          Vote
                                          Sign in
                                          Check!
                                          (thinking…)
                                          Reset
                                          or sign in with
                                          • sso
                                          • facebook
                                          • google
                                            Password icon
                                            Signed in as (Sign out)
                                            You have left! (?) (thinking…)
                                            0 comments  ·  Apps (all platforms)  ·  Flag idea as inappropriate…  ·  Admin →
                                          • Don't see your idea?

                                          Feedback and Knowledge Base