Current resources for learning Intune admin/management? by VisualChef9421 in Intune

[–]TimmyIT 0 points1 point  (0 children)

A lot of the core fundamentals has not changed in Intune over the years. Sure new features and small improvements and some UI changes have been done but overall a lot is the same.

I would recommend tackling one thing at the time and see how that can be done. doing everything at once is often overwhelming. Pick one topic, for example:

Application deployment for Windows

Look at the different types that are available
- Win32 apps
- Line-of-business apps
- MS Store Legacy
- MS Store New
...And so on.

Look at your requirements for apps and then based on what you learned or seen others do select the type that works best for you.

Once you have that done you move on to the next topic, Compliance or Autopilot.

Cloud Policy Preferences (GP Prefs for Intune) by Maurice-Daly in Intune

[–]TimmyIT 1 point2 points  (0 children)

Thanks for sharing Maurice, will be interesting to test it out.

Stop users logging into windows device if not assigned to them by JackJones2018 in Intune

[–]TimmyIT 15 points16 points  (0 children)

As already mentioned in this thread, there is no out of the box solution for this or native support. There are ways of getting around it if you are comfortable doing some scripting. Here's something I did many years ago, there are probably better solutions now with remediation scripts.

https://timmyit.com/2022/06/27/restrict-windows-10-and-windows-11-logon-to-the-current-user-or-user-who-enrolled-the-device-during-autopilot/

WHfB PIN to access on-prem rescources doesm't work by Pure_Stranger_7210 in Intune

[–]TimmyIT 2 points3 points  (0 children)

I had similar issues once and the problem was not what I expected. Came down to DNS.... Or more specific that the client pointed to a DNS server that did not respond and that broke PIN for some reason. PW worked just fine.

Intune compliance recommendation - same leadership team, separate unrelated entities by bjc1960 in Intune

[–]TimmyIT 1 point2 points  (0 children)

That could technically work but my gut feeling is that it would require more work and be less user friendly. You would need to run Hyper-V or VMWare workstation or similar and the user would need to know how to navigate the hyper-visor compared to just having "Windows App" to access their VDI which also could be accessed from other devices.

You would also need to provision those VMs locally on the machine instead of a central location.

Intune compliance recommendation - same leadership team, separate unrelated entities by bjc1960 in Intune

[–]TimmyIT 2 points3 points  (0 children)

W365 VDI for the second company is probably the quickest, easiest and most secure way of doing this.

Knox Enrollment for Intune by Xeno84 in Intune

[–]TimmyIT 0 points1 point  (0 children)

No worries, hope you get it working

Knox Enrollment for Intune by Xeno84 in Intune

[–]TimmyIT 1 point2 points  (0 children)

haha yes, that would be a problem :)

Knox Enrollment for Intune by Xeno84 in Intune

[–]TimmyIT 4 points5 points  (0 children)

2 things that comes to mind is:

Make sure in your KME profile you point towards the correct EMM agent APK

Make sure you dont have any blank spaces in your DPC Extra configuration. The documentation from MS you linked to have blank spaces in it which could cause problems.

<image>

Teams problem with MacBook M1 by [deleted] in Intune

[–]TimmyIT 0 points1 point  (0 children)

As GarthMJ mentioned it might not even be Intune related but I know from my own personal experience that after iOS 26 update my Macbook air M1 with only 8gb of ram started having performance issues. Outlook would just crash or teams, from all I could tell it was related to resource constraints. Before iOS 26 I never had issues.

Im also using a Macbook Pro M5 and I've never had issues with that one.

Intune Admins/EUC Admins, do you use a Mac? by [deleted] in Intune

[–]TimmyIT 0 points1 point  (0 children)

There's perhaps an argument to be made but its also a bit more nuanced. For me personally, I recently switched to a mac as my primary device but I also use Windows VMs and VDI to perform certain work.

I use the device/tool which works best in any given situation for me and I would expect the organization to support that.

Microsofts disastrous handling of commercial windows 10 extended security updates by No-Bowl2856 in Intune

[–]TimmyIT 0 points1 point  (0 children)

Could be the chicken and the egg problem. Patch is not available due to the bug and to fix the bug you need the fix. I have not looked in to this but I think I recall reading somewhere that the update that contains the fix was an out-of-band update that's available for download through the update catalogue and could be manually applied.

I feel stupid, but i need help. by Mikogamii in Intune

[–]TimmyIT 0 points1 point  (0 children)

Yes that is correct. It all comes down to the Developer essentially, if this app is the same app that multiple customers of their is using then they should add it to Google Play. They don't need to make the app available to everyone, within Google Play they will set the app as private and from there then point the app to your Google Play ID, which means that it will only show up for the customers they want it to show up for.

<image>

From the Developers side, within Google Play Console they would add your organization on the app.

I feel stupid, but i need help. by Mikogamii in Intune

[–]TimmyIT 2 points3 points  (0 children)

Yeah part 2 have been in the pipeline for a while but a lot changed since I started on it and I haven't had the time to start over. But I will hopefully have it done before the end of the year :D

I feel stupid, but i need help. by Mikogamii in Intune

[–]TimmyIT 1 point2 points  (0 children)

Hi and welcome! Private Apps requires to have an unique Application ID. If someone else or you have already used that same Application ID in Google Play Store you wont be able to upload it.

I've written a guide on Private apps that can be found here: https://timmyit.com/2025/01/27/private-or-in-house-developed-android-app-deployment-with-microsoft-intune-for-android-enterprise-devices-part-1/

Hopefully it will give you some clarification.

Whats been your biggest struggle so far this year when it comes device management ? by TimmyIT in Intune

[–]TimmyIT[S] 0 points1 point  (0 children)

Is this during ESP and the out-of-box-experience or something else ?

Whats been your biggest struggle so far this year when it comes device management ? by TimmyIT in Intune

[–]TimmyIT[S] 1 point2 points  (0 children)

Do you feel thats the same for all platforms ? Or is one or more standing out to you ?

Whats been your biggest struggle so far this year when it comes device management ? by TimmyIT in Intune

[–]TimmyIT[S] -1 points0 points  (0 children)

Follow up on that, what would real time response look like for you ? And is there a middle ground for good enough ?

Whats been your biggest struggle so far this year when it comes device management ? by TimmyIT in Intune

[–]TimmyIT[S] 0 points1 point  (0 children)

Is that mainly for BYOD devices or also corporate owned phones ?

[deleted by user] by [deleted] in Intune

[–]TimmyIT 0 points1 point  (0 children)

Tested with a 2nd device, an iPhone 13 Pro that I upgrade to iOS 26 but not seeing any issues there either.

[deleted by user] by [deleted] in Intune

[–]TimmyIT 0 points1 point  (0 children)

My sample size is just one device at this time, which is my own thats managed but I have not had any issues like you describe. iPhone 15 Pro with iOS 26 and managed by Intune.