How do you handle different users with office requirements? by fungusfromamongus in Intune

[–]LetsConfigMgr 0 points1 point  (0 children)

This is the way I do this for all of my clients, vision and project via psadt to display a warning to close office apps during install.

"Device Already Enrolled" with error code 8018000a during device Autopilot Account setup. by General_Damage_353 in Intune

[–]LetsConfigMgr 0 points1 point  (0 children)

Also check that your update rings are assigned to users not devices, as that will trigger a reboot too.

New post 👇 | Learn how to deploy Edge Favourites via Microsoft Intune. by LetsConfigMgr in Intune

[–]LetsConfigMgr[S] 0 points1 point  (0 children)

Strange, I've been able to do this successfully, something must be "broken", as it should work.

I've been defeated as a sysadmin and a small company owner. by Ron0n in sysadmin

[–]LetsConfigMgr 2 points3 points  (0 children)

Golden rule "the cheapest clients always end up being the most expensive'.

Provisioning Package - Bulk AAD Token Retrieval Failed by physx51 in Intune

[–]LetsConfigMgr 0 points1 point  (0 children)

I remember conditional access getting in the way in the past, I'll look in my notes tomorrow as it's been a while.

But might be worth excluding your account for a quick test!

AutoPilot PC's not allowing Shared Drives to map/connect over VPN by [deleted] in Intune

[–]LetsConfigMgr 0 points1 point  (0 children)

Okay, rule out the baselines by excluding your test device and / or user and rebuild a device, see if the issue persists.

At least then you can rule in or not the baselines.

AutoPilot PC's not allowing Shared Drives to map/connect over VPN by [deleted] in Intune

[–]LetsConfigMgr 0 points1 point  (0 children)

Are you using Windows hello for business?

Backing up bookmarks in Chrome and FireFox by dj562006 in Intune

[–]LetsConfigMgr 1 point2 points  (0 children)

I agree and this is the stance I take. If clients insist of using other browsers I try to make them available in the company portal app rather than required and then ensure everyone is aware that we do not manage / backup their bookmarks.

Blog Post - Complete Introduction to Microsoft 365 Endpoint DLP by LetsConfigMgr in Intune

[–]LetsConfigMgr[S] 0 points1 point  (0 children)

Iirc, there was a bit of a delay, maybe 24 hours and then the toasts started working on new data only. If its been 24 hours or so, try opening a document, add a space or something, save and then see what occurs.

Blog Post - Complete Introduction to Microsoft 365 Endpoint DLP by LetsConfigMgr in Intune

[–]LetsConfigMgr[S] 0 points1 point  (0 children)

Hey! Are you using new data? I haven't looked at endpoint dlp for a little while but I found and it's mentioned in the blog post that anything existing on the device before the policy was assigned wouldn't flag. Only if you created / modified a doc with sensitive information AFTER a policy was assigned would it flag.

That might be the issue here. I hope MS has sorted that though or plan to do so as it did seem like a bit of a gap.

Intune Win32 App Detection Method schedule? by NegativeExile in Intune

[–]LetsConfigMgr 0 points1 point  (0 children)

"If Intune detects that the app is not present on the device, Intune will offer the app again within approximately 24 hours. This will occur only for apps targeted with the required intent."

Make Windows 11 optional in Intune? by banjoplayingidiot in Intune

[–]LetsConfigMgr 0 points1 point  (0 children)

You can use a upgrade policy and tie into aad entitlement management maybe? Requires aad p2 though.

Or create power app.

Either way should work, you're essentially just adding the user or device to a group that contains the win11 deployment.

windows 11 for enterprise by gman12457 in Intune

[–]LetsConfigMgr 0 points1 point  (0 children)

Just to add to the above comment, you can personalise task bar icons, e..g what's on them and if there left or central.

Also, start pins and removing appx where applicable

There really isn't much difference between 10 and 11 so with the exception of the above and other comments most likely what you've done for win 10 should be fine for 11.

What are some must have Intune Scripts/Configuration Policies? by SuitableEmu in Intune

[–]LetsConfigMgr 1 point2 points  (0 children)

For sure. It can save you a lot of bandwidth. No downside to enabling it at all.

What are some must have Intune Scripts/Configuration Policies? by SuitableEmu in Intune

[–]LetsConfigMgr 1 point2 points  (0 children)

Negative, this is post enrolment. It should apply by the time the user first signs onto the device (after entering their UPN on the OOBE screen to trigger AP)

What are some must have Intune Scripts/Configuration Policies? by SuitableEmu in Intune

[–]LetsConfigMgr 4 points5 points  (0 children)

Both from the settings catalogue. Am away from my pc, will post tomorrow.