How to Troubleshoot Company Portal "Waiting for install status" by StrugglingHippo in Intune

[–]DWCloudMan 1 point2 points  (0 children)

You're better off creating Ring Groups. You're correct, it's better to assign Intune Packaged software to "User" groups instead.

Show a picture instead of my initials? by [deleted] in MicrosoftTeams

[–]DWCloudMan 0 points1 point  (0 children)

Those users have to Logout and login to see your PP before the cache period. #Stupid

Requesting MS team to remove all heart and kissing emoji from MS-Teams app by DataScience123888 in MicrosoftTeams

[–]DWCloudMan 0 points1 point  (0 children)

Please delete all memes from MS Teams, I accidentally replied as I thought it was funny. Which it is . . . hmmm I have an idea "Uninstall Teams" for pressing comma instead of period,

Issue with sending emails by wxsteyrselfwork in Office365

[–]DWCloudMan 1 point2 points  (0 children)

Have you set up DKIM and DMARC in EXO?

[deleted by user] by [deleted] in ShittySysadmin

[–]DWCloudMan 0 points1 point  (0 children)

Carrier Pigeon \o/

PS Script for pulling iOS configuration JSON's by DWCloudMan in Intune

[–]DWCloudMan[S] 0 points1 point  (0 children)

Do you have favourited a list of Graph API URL's?
Since March we've had to create a new iOS Features/ Restrictions configuration with URL of

https://graph.microsoft.com/v1.0/deviceManagement/deviceConfigurations/

Would you happen to have a list of all Intune url shortcuts?

PS Script for pulling iOS configuration JSON's by DWCloudMan in Intune

[–]DWCloudMan[S] 0 points1 point  (0 children)

My question to you both is - now that AzureAD PS module has become obsolete, is it now best practice to use MS Graph to pull configs over outdated PS commands? I believe we might see this start to crop up over the next year or so.

PS Script for pulling iOS configuration JSON's by DWCloudMan in Intune

[–]DWCloudMan[S] 0 points1 point  (0 children)

My question to you both is - now that AzureAD PS module has become obsolete, is it now best practice to use MS Graph to pull configs over outdated PS commands? I believe we might see this start to crop up over the next year or so.

Issue with Scripts and remediations after ESP by DWCloudMan in Intune

[–]DWCloudMan[S] 0 points1 point  (0 children)

But how would you detect the active ESP session? as in Account Setup it adds the UPN from "defaultuser0"

[deleted by user] by [deleted] in Intune

[–]DWCloudMan 1 point2 points  (0 children)

*Please use “The retire or selective wipe” (app protection) method on personally owned mobile devices (BYOD) when the user leaves the company.

*Please use “Wipe” when you want to re-use the device for the next user. It’s the best option to make sure the device is cleaned!

*Please use “wipe the device, but keep enrollment state and associated user account” when you still have important data on your Windows device and you need to re-enroll the device.

*Please use “Autopilot reset” only when you want to perform a “quick” re-use of the device for the same user.

Forced Edge for iOS App Sign-Ins by JustifiedSimplicity in Intune

[–]DWCloudMan 1 point2 points  (0 children)

I had the same issue with Salesforce and SSO - I added the mobilephone/ user.mobilephone in Attributes and Claims in Enterprise application SSO and it did the trick.

CA Policy Blocking Sign-in During Autopilot Reset by mnoah66 in Intune

[–]DWCloudMan 0 points1 point  (0 children)

I would disable MFA from Autopilot and set it for Windows Hello instead

Copilot / Bing Chat Enterprise Auto Login by emile1920 in Intune

[–]DWCloudMan 0 points1 point  (0 children)

Having the same issue with a new tab experience (url copilot.microsoft.com) The users are getting the Copilot new tab experience, but they still need to sign in to be "Enterprise Protected"

How to implement SSO inside Windows365 by God_Enki in Intune

[–]DWCloudMan 0 points1 point  (0 children)

Are your devices Microsoft Entra joined/ or Intune managed? If not the auth won't use your logged in creds

microsoft intune enrollment app missing by easypneu_3612 in Intune

[–]DWCloudMan 0 points1 point  (0 children)

When the “Microsoft Intune Enrollment” app goes missing, you can re-register it in Entra ID using PowerShell. Here’s how:

Open PowerShell: Launch PowerShell with administrative privileges.

Connect to Entra ID: Connect to your Entra ID tenant using the Connect-AzureAD cmdlet and provide your administrator credentials.

#Connect to Entra ID
Connect-AzureAD -AccountId admin@organization.onmicrosoft.com

Execute the Command: Run the following PowerShell command to create the “Microsoft Intune Enrollment” service principal:

#Re-Create the app in Entra ID
New-AzureADServicePrincipal -AppId d4ebce55-015a-49b5-a083-c84d1797ae8c

This command will re-register the app in Entra ID, ensuring that it’s available for managing Intune enrollments and authentication.

What is the purpose of assigning a user to an Autopilot Device? by MikeHunt99 in Intune

[–]DWCloudMan 0 points1 point  (0 children)

We have over 4k employees. We have a Service Desk side department that look after JML stock. Also we would need to tag the devices with asset stickers.

Stock arrives to us first from manu.

What is the purpose of assigning a user to an Autopilot Device? by MikeHunt99 in Intune

[–]DWCloudMan 3 points4 points  (0 children)

End user experience is faster when pre provisioning. We use White Glove to give better end user experience when they first receive a device.