Event banner
AMA: Securely manage iOS/iPadOS and macOS endpoints with Intune
Event Ended
Thursday, Jun 22, 2023, 08:30 AM PDTEvent details
Let’s chat about the latest and greatest in Intune Apple device management! With the introduction of Just-In-Time (JIT) functionality, your users will be able to enjoy a more seamless onboarding experience on bring your own device (BYOD) scenarios. The iOS Company Portal app will no longer be required for Azure AD registration and allow you to move towards a web-based device enrollment flow for BYOD scenarios. Similarly, the updated Account-Driven User Enrollment flow enables faster user enrollment for BYOD scenarios utilizing JIT registration without requiring the iOS Company Portal app. We are streamlining DMG app deployments and reducing vulnerabilities in your Mac environment by keeping macOS devices updated with the latest software updates. We are bringing the ability to use your Azure AD password to log in to your Intune-managed Macs.
Have questions? We’re here to answer them! Ask Microsoft Anything!
Post your questions in the Comments below. We'll have experts responding in the live stream and others in chat. |
This AMA is part of a Microsoft Intune edition of Tech Community Live. Visit https://aka.ms/TCL/Intune for the full agenda.
Heather_Poulsen
Updated Jun 22, 2023
- Char_CheesmanBronze Contributor
Thanks for joining us for today's AMA on Securely manage iOS/iPadOS and macOS endpoints with Intune. Up next: AMA - Endpoint Privilege Management and Intune Suite.
In addition to the questions posted on this page, we also answered questions posted in reply to the event on LinkedIn and Twitter. Here are the questions we answered today:
- JoshMaWeCopper ContributorWhy is the Shared iPad recognized as an unmanaged devices from Azure/CA. This leads to some issues when using App Protection Policies (MAM). Filtering / Groups are then not working.
- Char_CheesmanBronze Contributor
That concludes today's live stream. We'll continue answering your questions here in the chat until the end of the hour.
- ravip90Copper ContributorIf Comp Portal is not installed on the iOS/iPadOS device, would you still be able to send notifications to devices?
- JoshMaWeCopper ContributorWhy can't we rename devices manually after enrolling them with a device template in the enrollment profile?
- AnyaNovicheva
Microsoft
I will look into this and making the device name editable on iOS/iPadOS ADE devices even if a device name template is applied. However, even if a manual edit is made, if the device name template is edited and re-saved, that needs to be sent down again to all of the devices targeted with that assigned enrollment policy. Thank you for that feedback!- JoshMaWeCopper ContributorHi Anya, awesome, sounds great. If there is anything we can help with feel free to reach out to me via LinkedIn. Also happy to attend in testing with our test tenant.
- Uday_blueCopper ContributorWhat if we have the authenticator app already installed. Was the authenticator app a VPP app?
- jbrydgesCopper ContributorWill iOS and Android devices support multiple organizations for app protection policies? Example: if there is a contractor that also has app protection policies that use another orgs enrollment, we are unable to apply our own app protection policies.
- hanshisantos
Microsoft
This is currently in our development plans, once completed and released you should be able to accomplish this. More news to come on this subject later this year. - JaminAlmond
Microsoft
Hello Justin, We support Cross-tenant access, enabling you to honor the other organizations configurations. This does not enable your specific use-case, it's something to consider. https://learn.microsoft.com/en-us/azure/active-directory/external-identities/cross-tenant-access-overview
- RobcondeCopper ContributorHow to join these "private previews" 😉 ?
- Char_CheesmanBronze Contributor
Thanks for participating in today's AMA on Securely manage iOS/iPadOS and macOS endpoints with Intune! For reference, the panel covered this topic at around 48:30.
- kish14Copper ContributorI would like to split my question into multiple user personas for macOS:- Q1:- When will the local user account management option be enabled for ABM enrollment? The current settings do not allow for account creation screen restrictions and are unmanaged. Q2:- When will we get the option to edit the shell script on the fly rather than editing it manually and re-uploading the updated amendments Q3:- Is there any scope for shell scripts enhancements to have more granular details via the logs (E.g. Security Control Status (Enabled/Disabled) Thanks! Kishoth P
- Char_CheesmanBronze Contributor
Thanks for participating in today's AMA on Securely manage iOS/iPadOS and macOS endpoints with Intune! For reference, the panel covered this topic at around 37:00.
- Rob_RidingOccasional ReaderWhat about deploying Powershell scripts on macOS devices?
Location
Microsoft Tech Community