Intune Newsletter – 21st October 2022

Welcome to another week of exciting content with some post-Ignite summaries and a good look at the newly added Linux support for any penguin fans.

Community Content

We start this week with a round-up of some of the findings from Microsoft Ignite.

First up, Fabrizio Gobeli gives an excellent run-through of Intune, W365, M365 and Azure AD updates

https://gobisweb.ch/2022/10/15/news-my-top-10-takeaways-from-microsoft-ignite-2022/


Jonas Bøgvad has a look at the announcements around the Entra product line

https://blog.skymadesimple.io/microsoft-entra-ignite-2022/


Jannik Reinhard looks at the Intune specific announcements in greater detail

https://jannikreinhard.com/2022/10/15/recap-ignite-2022-new-intune-related-announcements/


Shehan Perera looks at Intune and Entra updates with some excellent links at the end of the article

https://shehanperera.com/2022/10/15/msignite-endpointmgmt-entra-updates-1/

Shehan also has a second non-Ignite post this week looking at the new authentication strengths feature currently in preview, how to configure it and what the end user experience looks like.

https://shehanperera.com/2022/10/17/configure-aad-auth-strengths-1/


Next up, we have two posts from Prajwal Desai looking at all things Windows 365, starting with a post looking at the different ways of connecting to your new cloud PC including the all-new app announced last week.

The second post looks at the keyboard shortcuts available to you within the running Windows 365 machine


The keep an eye on what is happening in your Intune environment, have a look at this Azure workbook from Niklas Tinner, well worth implementing!

https://oceanleaf.ch/intune-change-tracking/


Damien Van Robaeys has released part 5 of the excellent series on log analytics, this one using PowerShell and KQL queries. If you haven’t read the previous articles, give them a read first.

https://www.systanddeploy.com/2022/10/starting-with-log-analytics-part-5.html


Next we have two posts from Rudy Ooms, the first one looking at the excellent debug tool, what it does and how to use it.

Rudy’s second post looks at ADMX import, troubleshooting errors and a workaround for one of the errors you may have come up against.


If you do any app packaging, have a look at this new site from Grant Dickins with a few posts on packaging MSI, InstallShield and other installation technologies.

https://grantdickins.co.uk/


This new application from Sidnei Brandao will show you what is assigned in Intune against a particular Azure AD group (something which I often find myself looking for when looking at an environment for the first time)

https://github.com/sibranda/GetIntuneAssignments


If you manage MacOS devices, have a look at this script from Tobias Almén which will automate the setup of Munki in Azure for you (I personally prefer Munki to straight Intune for app deployment at the moment)

https://github.com/almenscorner/Munki-Deploy-Azure


In case you missed it, Linux device support has now started rolling out across tenants so we have a few community members write articles on how to enrol Linux machines.

The first post is from Octavio Rodríguez with the steps to follow for enrolling an Ubuntu device (note: URL has been translated from Spanish hence the unusual link)

https://www-deployment-mx.translate.goog/inscribir-linux-ubuntu-con-microsoft-intune/?_x_tr_sl=auto&_x_tr_tl=en&_x_tr_hl=en-US&_x_tr_pto=wapp


Christopher Mogis has also looked at enrolling an Ubuntu device, including installing Microsoft Edge

https://www.ccmtune.fr/2022/10/how-to-enroll-your-linux-device-to.html


Paul Winstanley has looked again at Ubuntu, but including Compliance Policies and how this looks for the end-user

https://sccmentor.com/2022/10/19/first-steps-into-linux-management-via-microsoft-intune/


Arno van Dijk has also looked at Ubuntu enrollment and Compliance Policies.

https://www.linkedin.com/pulse/tux-in-tune-enroll-your-ubuntu-devices-microsoft-intune-arno-van-dijk?lipi=urn%3Ali%3Apage%3Ad_flagship3_profile_view_base_recent_activity_details_all%3BmINVSuw8RB2Q6me1qZiC4Q%3D%3D


Windows 11 22H2 includes new features for Smartscreen and Advanced Phishing. To find out more about them, have a look at this post from Moe Kinani

https://cloudbymoe.com/f/smartscreen-and-the-new-enhanced-phishing-protection-features


The starters and leavers process is often a very last minute thing for IT staff, something which would be better automated. Fortunately Pim Jacobs looks at doing so using the new Azure AD Lifecycle workflows included in Premium P2 licensing.

https://identity-man.eu/2022/10/19/starting-with-brand-new-azure-ad-lifecycle-workflows-part-1/


Now we have two posts from Brooks Peppin. The first one runs through the steps to setup hello for business SSO via the key-trust method for those not meeting the pre-reqs for the new Cloud Trust option.

https://brookspeppin.com/2021/08/13/how-to-setup-windows-hello-for-business-key-trust-method/

The second is a thorough comparison between Intune and Workspace One

https://brookspeppin.com/2022/10/17/intune-vs-workspace-one-15-pros-and-cons-2022-edition/


Doug Petrole has tested the new Windows 365 client and shared their findings in this new post.

https://www.desktopsforeveryone.com/blog/trying-out-the-windows-365-client


Following on from enrolling an Ubuntu device into Intune, Christopher Mogis also has looked at how to install Teams onto your new Linux device

https://www.ccmtune.fr/2022/10/how-to-install-microsoft-teams-on-ubuntu.html


Bitlocker is an amazing tool, but can be a bit temperamental to setup and encrypt silently. This guide from Jitesh Kumar covers the steps required to silently encrypt devices.

https://www.anoopcnair.com/deploy-bitlocker-using-intune-endpoint-security/


One of the newly announced Surface laptops is running an ARM chip and with the increased battery life they offer, I can see these increasing in popularity in the next few years. If you are supporting ARM based machines already, have a look at this guide from Jose Schenardie to deploy apps to them.

https://intune.tech/2022/10/20/Deploying-ARM-apps-with-Microsoft-Intune.html


We have three posts next from Somesh Pathak both covering MacOS management. The first post looks at the pre-requisites required to manage MacOS devices including Apple Business Manager, certificates and MDM

The second post looks at using Intune to manage config profiles and deploy Defender for Endpoint

The final post from Somesh looks at MacOS update policies now found in Intune


Ákos Bakos has added part 4 to the series looking at OSDCloud, this part looking at some of the more in-depth features within the tool


Managing personal Android devices can be a bit of a security risk. This post from Peter van der Woude shows how to use Microsoft Defender for Endpoint to protect BYOD devices.


To have a look at the new enrollment notifications, read this post from Joost Gelijsteen


Dominiek Verham has had a look at the latest monitoring tools for Windows 365 machines in this post


Joey Verlinden has updated the post on using Intune to control default Outlook Fonts (this is one I’ve used myself)

https://www.joeyverlinden.com/default-fonts-and-styles-for-outlook-via-intune/


If you are considering switching to Autopatch, this guide from Colin Searle covers how to configure and use it in a production environment

https://managingmodernitsystems.blogspot.com/2022/10/intune-autopatch-overview-and.html?m=1


Rather than having to constantly monitor things, follow this guide from René Laas to use Logic Apps and Teams Adaptive cards to alert you when a new feature update is available

https://endpointcave.com/get-notified-when-new-windows-feature-updates-are-available/


To speed up imaging via cloud, BranchCache will offer significant improvements. To find out how, watch this video from Johan Arwidmark


The final community content this week is a video run-through of enrolling a Linux device from Jakub Piesik


Microsoft Content

Now for the Microsoft announcements from the last week

The Technical Takeoff launches on Monday, I’d strongly recommend getting yourself signed up for whichever sessions interest you

https://techcommunity.microsoft.com/t5/tech-community-live/microsoft-technical-takeoff-windows-and-microsoft-intune/ev-p/3632740


First, Kayla Cinnamon has announced that Windows Terminal will be default in Windows 11 which is extremely welcome for a fantastic application!

https://devblogs.microsoft.com/commandline/windows-terminal-is-now-the-default-in-windows-11/


Another useful post from Harjit Dhaliwal (who I recommend following on LinkedIn and Twitter) looking at everything Windows related from Ignite and a look towards the Technical Takeoff next week.

https://blogs.windows.com/windowsexperience/2022/10/18/spotlight-on-windows-at-microsoft-ignite-and-the-technical-takeoff/

Harjit has also published this with a full look at Ignite and which sessions to catch up on if you missed them (or if you want to re-watch)

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/this-is-windows-at-microsoft-ignite-2022/ba-p/3648118

For a look at what’s new in Windows 10 22H2 from an IT perspective, have a look at this:

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/it-tools-to-support-windows-10-version-22h2/ba-p/3655750


And finally a look at some of the new features in Autopatch from Harman Thind

https://techcommunity.microsoft.com/t5/windows-autopatch/what-s-new-in-windows-autopatch-new-feature-tenant-management/m-p/3656266


A look at the new Windows 365 updates from Microsoft Mechanics

https://officegarageitpro.medium.com/new-windows-365-app-management-updates-f637dc8f70f8


That’s it for this week, if you haven’t done so already, get signed up for some of the Technical Takeoff sessions and I’ll be back next week with more Intune community news!

Posted in Newsletter