Forum Widgets
Latest Discussions
Did expediting the 2024-08 Quality Updates fail for anyone else?
I posted this question yesterday on the Windows Servicing board, but there isn't much activity there. I hope it's okay to re-post it here. Due to the CVE-2024-38063 vulnerability, we attempted to use the Expedited Quality Updates feature to enforce the immediate installation of the 2024-08 security updates. Unfortunately, the feature simply did not work. Even a couple weeks after deploying the expedited update profile, we had about 25% of our Windows endpoints still in "Pending" status, most of which were powered on 24/7. We still have ConfigMgr in our environment, so I used CMPivot to run a query for events in the System log with "2024-08" in the message. This showed me that rather than installing the update and forcing a restart one day later as configured, the update was being installed, then reverted about ten hours later, then immediately re-installed again, over and over: If I manually initiated a restart on any of the affected machines, the update was successfully finalized, so the issue wasn't a failure to install the update. I've opened a case with Microsoft Support, but it is progressing slowly. If nobody else is seeing the issue, I will throw in the towel, but if it's more widespread, I think it is worth fighting to get this fixed (assuming that Microsoft isn't already aware and has simply chosen not to publicize it — for example, in the Windows release health blade in the Microsoft 365 Admin Center).SolvedRyanSteele-CoVMay 09, 2025Iron Contributor673Views1like5CommentsIntune tenant migration
Hi, I could use some help about an Intune tenant migration. The company I work at acquired a company last year, and they have an Intune environment already that needs to be migrated to our organization's tenant. I found some information how I could possibly do this with Windows Autopilot, and going for a wipe and re-deploy. Their domain isn't migrated yet, and they are still using their own accounts and license. They have a 2nd and separate account from our company domain. What would be the right order? Do the domain migration first? Or assign licenses and policies to our accounts, and when the domain migration is done and the accounts are synced as one do the Intune tenant migration? Some advice would be very appreciated!DjaswantMay 09, 2025Brass Contributor29Views0likes3CommentsManaged google play connection fails at last step.
I am trying to complete Android enrollment. I start the Managed Google Play connection wizard.| It autopopulates with another email address from my company saying "your EMM suggests using email address removed for privacy reasons" I change the email and put a dedicated non-personal email. I login with the Microsoft credentials. I enter the company name and country. I accept Android enterprise as the only subscription. I agree to the Google Agreements. I accept Allow and create on the page for "Manage your Android Enterprise devices using Microsoft Intune". I get a screen which says You will be redirected to Microsoft Intune to complete the process for a while. Then I get a something went wrong screen.ChamMay 09, 2025Copper Contributor42Views0likes2CommentsKiosk profile with Azure AD user
Setting User logon type to "Azure AD user or group" does nothing. Event viewer states "No mapping between account names and SIDs was done". Hovering over the Logon Name column info icon states To configure an AAD account for kiosk mode, use this format: AzureAD\email address removed for privacy reasons. I can only pick from a list, so unsure what this is referencing.DeepJinMay 09, 2025Copper Contributor43Views0likes4CommentsIntune Connector for AD
I noticed there was an updated version of the Intune Active Directory Connector - 6.2505.2001.2 Are there any release notes for this please as we only updated to 6.2504.2001.8 yesterday and its erroring like crazy but 6.2501.20005 worked.jason_floodMay 09, 2025Copper Contributor26Views0likes1CommentDeploying new PCs through Autopilot (Hybrid joined)
Hi, I have seen an article from Microsoft that they don't recommend deploying new PCs through autopilot as it may not get some of the latest features. So they asked to do and local AD join first and then register in Azure / intune etc... Can someone list exactly the features that we will lose if we deploy new PCs through Autopilot (Windows 11 ) devices. We deployed new PCs and works well so far but wanting to know the features that we will lose.shehan31May 09, 2025Copper Contributor29Views0likes2CommentsBlue screen crashes caused by April updates KB5055523
Hy, I have some test devices afected from installing KB5055523, the update will not install with an error code 0x800f081f. I have just stopped/uninstall this deployment under updates ring for QU and am wondering if I resume it will probably go to the latest quality update with this issue 2025.04 B one or will just go to the 2025.4 OOB... W11 release and KB issue: https://learn.microsoft.com/en-us/windows/release-health/windows11-release-information https://www.windowslatest.com/2025/04/11/windows-11-microsoft-warns-do-not-delete-inetpub-folder-after-causing-confusion/ Regards, Bogdan276Views0likes1CommentInvalid profile
Hi all, I have tried to enrol a device to intune using configurator into apple school manager which works find then gets passed into intune however when I assign a profile (existing or new) it fails. When pressing the enrol button on the ipad it says "invaild profile" I cant go no further all I can do is release from org then try again but I have tried multpile times no luck any ideas?AB21805May 08, 2025Bronze Contributor23Views0likes0CommentsIntune URLs - Default Category Seems to Include Non-Applicable URLs
I've run a PowerShell script that returns the URLs and IP ranges required by Intune but it seems to return URLs that should not be required such as Cortana.ai, itunes.apple.com, virtualearth.net, assets-yammer.com, platform.linkedin.com and many others. Those listed are in the default category. Does anyone know of a script I can use that just returns URLs and IP ranges essential for Intune, or what I can do to modify the code I am using to do the same. Below is the code I use to collect the IPs\URLs. (invoke-restmethod -Uri ("https://endpoints.office.com/endpoints/WorldWide?ServiceAreas=MEM`&`clientrequestid=" + ([GUID]::NewGuid()).Guid)) | ?{$_.ServiceArea -eq "MEM" -and $_.urls} Regards, Pete.SolvedpleemanMay 08, 2025Copper Contributor44Views0likes4CommentsLocked screen picture URL (Desktop only) is not applicable in Windows 11 Business
Locked screen picture URL (Desktop only) is not applicable in windows 11 Business. We are using Windows 11 Business. We have created the Profile for Device Restrictions. Locked Screen Experience Locked screen picture URL (Desktop only) ---> <values> Personalization Desktop background picture URL (Desktop only) --> <values> The above settings are not reflected in Windows 11 Business machines. Please confirm anyone have solutions / reasons for that.rn4concordMay 07, 2025Copper Contributor46Views0likes2Comments
Resources
Tags
- Intune4,102 Topics
- mobile device management (mdm)2,211 Topics
- Mobile Application Management (MAM)815 Topics
- Conditional Access445 Topics
- Software Management437 Topics
- Graph API237 Topics
- Azure Friday163 Topics
- Autopilot110 Topics
- android68 Topics
- ios56 Topics