Intune Newsletter – 27th October 2023

Welcome to the spooky Halloween special Intune newsletter, full of creepy content and haunting videos (maybe)

Community Content

We start this week with Rudy Ooms digging into the Intune DLLs again, this time discovering some clues pointing to a new version 2 of Autopilot…

https://call4cloud.nl/2023/10/there-will-be-blood-autopilot-version-2/


Next, for anyone doing app packaging, PSADT is a great way to standardise under a single platform. Learn more about it in this post from Niklas Rast

https://niklasrast.com/2023/10/24/power-up-your-software-packaging-with-psappdeploytoolkit/


Following on from last weeks post on how to manage the BIOS on Intel NUC devices, Damien Van Robaeys shows how to export the settings into PowerShell or CSV

https://www.systanddeploy.com/2023/10/export-bios-settings-for-intel-nuc.html


Shehan Perera has continued the series looking at Autopatch with the latest two posts. The first covers how to enrol your tenant into the service and then add your devices to be managed by it.

https://shehanperera.com/2023/10/24/wap-tenant-enrollment-device-mgmt-01/

The second post looks at the Entra groups and Intune policies created during enrollment

https://shehanperera.com/2023/10/24/wap-entraidgroups-policies-01/


Thomas Marcussen also runs through configuring Autopatch in this comprehensive post

https://blog.thomasmarcussen.com/windows-autopatch-guide-to-setup-and-configuration/


You may want to temporarily, or permanently allow new enterprise features on your Windows devices (CoPilot for example). To find out how to manage them from Intune, read this post from Peter van der Woude

https://www.petervanderwoude.nl/post/using-temporary-enterprise-feature-control-for-early-testing-new-features-in-windows/


We now have two updated posts and scripts plus a new post from Michael Niehaus with some fixes. The first is a script to run an MDT task sequence during Autopilot

https://oofhours.com/2023/10/23/run-an-mdt-task-sequence-during-autopilot-revisited/

The second update is a script used to deploy updates during Autopilot

https://oofhours.com/2023/10/23/installing-updates-during-autopilot-windows-11-edition-revisited/

The third post from Michael includes a script to rename your Autopilot devices

https://oofhours.com/2023/10/26/renaming-autopilot-deployed-devices/


Another updated script, this one comes from Timmy Andersson and can be used to run a sync across all devices in the estate

https://timmyit.com/2023/10/23/invoke-sync-to-all-intune-devices-with-microsoft-graph-powershell-sdk/amp/


This post from Torbjorn (Mr T-Bone) Granheden looks at the different options for wiping a device within the Intune portal

https://tbone.se/2023/10/23/to-wipe-or-not-to-wipe/


Next, Michael Meier looks at windows sign-in using passwordless and web authentication including how to configure within Intune

https://mikemdm.de/2023/10/22/windows-passwordless-experience-and-web-sign-in/


Prepare your environment for CoPilot by following these tips from Simon Skotheimsvik

https://skotheimsvik.no/unlock-the-copilot-advantage-supercharge-your-entra-id-user-data


Now for two posts from Jan Bakker. The first showing how to prepare your environment for the release of device passkeys

https://janbakker.tech/prepare-for-passkeys-in-entra-id/

Jan’s second post covers how you can use a Logic App to create a temporary access pass for user self-service

https://janbakker.tech/how-to-create-a-temporary-access-pass-using-logic-apps/


This post from Somesh Pathak looks at the advantaged of using Federated Authentication with your Apple Business Manager devices

https://www.intuneirl.com/look-beyond-federated-authentication/

A second post from Somesh, looking at what declarative device management is and why it is such an improvement on MDM for your mobile devices

https://www.intuneirl.com/the-shift-from-mdm-to-ddm/


You may want to enable CoPilot within Edge for your managed devices. If you do, check out this guide from Peter Klapwijk

https://www.inthecloud247.com/enable-copilot-in-a-managed-microsoft-edge-browser/


In larger organisations, there will be some areas of the business which need different layers of permissions and this also applies to LAPS. You may not want one department accessing the local admin on another one. For that, look at how to use LAPS with Administrative units in this post from Tom Machado

https://poemtomdm.fr/2023/10/25/leverage-administrative-units-to-delegate-windows-laps-passwords-in-intune/


If you want to migrate your existing devices, but don’t have SCCM for a rapid rebuild, Johan Arwidmark has you covered with a task sequence template for MDT

https://www.deploymentresearch.com/using-mdt-with-windows-autopilot-for-existing-devices-task-sequence-template-and-scripts/


An exciting new addition, you can now enrol iOS devices using web based enrollment, rather then relying on Company portal! Find out more in this post from Moe Kinani

https://cloudbymoe.com/f/web-based-ios-device-enrollment


Next, find out how to use Tamper Protection with your Windows 365 machines in this post from Dominiek Verham

https://techlab.blog/tamper-protection-the-microsoft-intune-and-windows-365-edition/

https://techlab.blog/tamper-protection-the-microsoft-intune-and-windows-365-edition/


Learn how to schedule your Windows updates using Autopatch deployment cadence in this post from Niels Kok

https://www.nielskok.tech/intune/windows-autopatch-deployment-cadence-scheduled-install/


Video Content

Now onto this weeks video content, starting with how to setup Windows LAPS (now in GA) from Andy Jones

https://www.youtube.com/watch?v=leo_rQXegtU


Next, Chander Mani Pandey demonstrates how to use PowerShell to bulk update Autopilot group tags

https://www.youtube.com/watch?v=FlCEAmPBXbU


Learn all about the Intune Change Tracking workbook from Niklas Tinner here

https://www.youtube.com/watch?v=96yS0r9vtw8


To find out all about the latest Windows release information, watch this video featuring Rachelle Blanchard, Mabel Gomes and Santoshi Kandula

https://www.youtube.com/watch?v=DMa9iTwKyqY


Microsoft Content

Onto the Microsoft content with a look at Windows Passwordless and Intune from Sayali Kale

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-passwordless-experience-expands/ba-p/3962005


The device connectivity experience for Defender for Endpoint has been improved, find out more with Marysia Kaminska

https://techcommunity.microsoft.com/t5/microsoft-defender-for-endpoint/announcing-a-streamlined-device-connectivity-experience-for/ba-p/3956236


Learn all about the voice accessibility feature in Windows in this latest skilling snack from Ben Watt

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/skilling-snack-voice-access-in-windows/ba-p/3962042


Some exciting new additions on the 2310 release, find out all about them here with Ramya Chitrakar

https://techcommunity.microsoft.com/t5/microsoft-intune-blog/what-s-new-in-microsoft-intune-2310-october-edition/ba-p/3964074


That’s it for this week, have a great weekend and a spooky Halloween!

Leave a Comment