Endpoint DLP still shows disabled even after onboarding the device in MDE
I've seen somewhere that onboarding the device in MDE won't be requiring to onboard the device to Purview portal for DLP to work but below image shows that my Endpoint DLP Status is disabled. Take note that these machines are non-domain joined. In the…
Not getting notification email for non compliance device
Hi Team I created a notification for non compliance devices and configured the action for non compliance. I send preview email. I got the notification preview email sent successfully. However, email is not delivered to end users and additional…
Intune role permission to view 'Default Device Compliance Policy'
Hi, Please can someone advise which Intune role permission is required to allow visibility of the 'Default Device Compliance Policy' under the Device compliance page? I have a RBAC role (assigned to a scope tag), with Read and View reports allowed for…
Intune Kiosk Mode Copy/Paste
Hello, We currently have a number of Single app Kiosks using Edge. It's been noticed that Copy/Paste is disabled by default. I havent seen this in any documentation. Is there any way to enable this even if its by a reg key rather than intune setting?
what solution has replaced microsoft Network Access Protection (NAP)
NAP is a client health policy creation, enforcement, and remediation technology. With NAP, system administrators can establish and automatically enforce health policies, which can include software requirements, security update requirements, and other…
Management agent Not Available
I have some company devices that are marked as non-compliant. The report shows some are not secure boot enabled, some are not Bitlocker encrypted. But when I check on these computers, all conditions are compliant. And when I look at the report in Devices…
how to enable remote lock in Microsoft Intune ?
Hi Reader, I would like to know how to enable remote lock in Microsoft Intune ? The device which I need to lock remotely is compliant and that I have checked from the overview and the mentioned device is "Microsoft Entra Joined" also. However,…
How to prepare clean-up rule in Intune to remove only Android and iOS non-compliant devices?
Hello, I want to know, how to create clean-up rule in Intune to only remove the "iOS and Android" non-compliant devices from Intune. Thanks!
How to Enable Remote Lock in Microsoft Intune?
Hi Reader, I would like to know how to enable remote lock in Microsoft Intune ? My aim is to Remotely lock any Entra id connected device (through work or school account) in my organization through microsoft intune of the Global Admin. The device which I…
How to Enable Remote Lock in Microsoft Intune?
Hi Reader, I would like to know how to enable remote lock in Microsoft Intune ? The device which I need to lock remotely is compliant and that I have checked from the overview and the mentioned device is "Microsoft Entra Joined" also. However,…
Intune Application Deployment Delay and Log Location
Hello everyone, We are experiencing delays in the installation of applications deployed via Intune, even though the installation is set to "Required". The process is taking longer than expected. Could anyone please guide us on the following: …
2024 and still receiving 2016345612(Syncml(500)
had a user reinstall win 11 on a laptop with a new m2 drive 2 tb storage installed. we only use windows defender and with rea-time protection, our other devices ran through intune did not experiance these problems, this laptop seems to be a problem child…
2016345612(Syncml(500) - Intune Compliance Policy Error
We have had this recurring issue for a long time now, and despite searching the error all over the place, there seem to be a lot of other IT professionals in the same boat, but no obvious answers. The error is on the Anti-Virus setting on the default…
Device compliance in multitenant for CSP
Hello all, I have two existing tenants: TenantA - Work tenant, containing all my data and services and my work account TenantB - Admin tenant, containing our tools for our IT activity toward our customers and my admin account. Let say work@tenantA…
Microsoft O365 Group Mailbox only retention
Hi, I need to create a retention policy to delete emails older than 1 month from O365 group email. Already created a retention policy in Purview and changed the application attribute Like this from Powershell --> Set-RetentionCompliancePolicy…
2016281112 Remediation failed
Hello everyone, I have the problem, that only a few of our companies devices get marked as noncompliant with a "2016281112 (Remediation failed)" for the system account. It's only for the minimum password length as well. Most other devices work…
Implementing EPAC (ISO 270001) using Terraform
Hello Everyone , My company is using CAF to manage policies on Azure infrastructure. Now they want to switch to EPAC for better policy management. This is our first time for implementing EPAC. Have below queries for which need suggestion. How to decide…
Restricting Access to a Web Application Based on Device Compliance with Intune and Azure AD
I am currently using Microsoft Intune to manage access to a third-party web application that has been registered as a web link app type. I have successfully added the application in Intune, and it appears in the Company Portal. However, users can share…
Conditional access for mobiles: Android and iOS
Hi everyone, I am asking for support, When I try to add a business account in a native application such as gmail on an unregistered cell phone, after specifying only the business email address and domain password = access is not possible (correct…
How to Restrict Access to a Web Application Based on Device Compliance Using Intune and Azure AD?
I am currently using Microsoft Intune to manage access to a third-party web application that I have registered as a web link app type. I’ve successfully added the application in Intune, and it appears in the Company Portal. However, I am facing an issue…