Intune Newsletter – 7th February 2025

Another week has passed, it feels like spring is looming and hopefully some better weather!  Whilst conference season is definitely upon us, there is still plenty of Intune content for you this week!


Community Content


We start this week with a look at how to further protect your Windows Hello for Business sign-in using Enhanced Sign-in Security, including a remediation to check if your devices support it and how to enable it from Nicklas Ahlberg

https://www.rockenroll.tech/2025/01/21/windows-hello-enhanced-sign-in-security/


If you have a high staff turnover, or have been doing lots of testing, you may have a cluttered Intune device list.  Whilst the cleanup rules will sort it eventually, a quicker option is this script from Tom Machado

Cleaning Up 12K Duplicate Devices in Intune : Challenge Accepted


Following on from the previous post configuring a local server to display in Azure, part two from Michael Meier looks at deploying AVD to it

Setup AVD on Azure Local (Azure Stack HCI) in your (Home)Lab – Part 2


If you need to deploy something to devices, but only have been given usernames, this script from Jorge Suarez will come in very useful

https://www.jorgeasaur.us/synchronizing-device-groups-with-entra-user-groups-using-powershell/


Discovered apps are a very useful addition to Intune, but not hugely user friendly.  Damien Van Robaeys has created a log analytics dashboard here to display the data for you.

https://www.systanddeploy.com/2025/02/intune-discovered-apps-dashboard-with.html


One of the add-ons available in Intune suite is Cloud PKI for certificate based authentication.  This guide from Jeroen Burgerhout runs through how to configure and use it

https://www.burgerhout.org/activating-and-utilizing-certificate-based-authentication-with-microsoft-cloud-pki/


Ever needed to bulk update Group Tags on your devices?  It’s not as easy as it seems.  Fortunately Nick Benton has a script here to help you

https://github.com/ennnbeee/AutopilotGroupTagger


Next, Peter van der Woude looks at further securing Edge with Enhanced Security Mode

Tightening browser security with Enhanced Security Mode in Microsoft Edge


This application from Rink Turksma will quickly deploy apps to Intune from a variety of sources

https://github.com/rink-turksma/IntunePrepTool/


Smart card authentication is still going strong in 2025 (especially in healthcare).  If you want to use it on an Intune managed device, follow this guide (and script) from Florian Salzmann

https://scloud.work/how-to-configure-smart-card-authentication-in-intune/


Intune kiosk mode can be troublesome at times.  For a kiosk, but without the kiosk settings, check out this post from Joey Verlinden

Entra ID Joined, Intune managed device with SysInternals Autologon (Kiosk on a Budget)


Windows 11 is the perfect opportunity to finally ditch the domain join on your devices and go cloud native.  Here are 5 excellent reasons to make the switch from Ola Ström

5 reasons you should go cloud native with Windows 11


I have noticed an increase in macOS devices in the enterprise, partially due to the improved management options from Intune.  If you’re getting started on your macOS journey, check out this guide from Jeroen Burgerhout 

https://www.burgerhout.org/introduction-to-macos-management-in-intune-beginner-friendly/


Is the thin client making a comeback?  If it is, I hope it’s better than the old ones!  Thomas Marcussen looks at the Microsoft offering, Windows 365 link here

Windows 365 Link: Enhancing the Cloud PC Experience


Learn how to manage administrators on your Intune devices here with Niklas Rast

https://niklasrast.io/blog/post-0079


Next, Joost Gelijsteen looks at OMA-DM and how it works to apply policies onto your devices

Understanding OMA-DM and Intune’s Policy Enforcement: A Deep Dive into Setting and Verifying Policies


Video Content

Now onto the video content, starting with a look at managing frontline devices with Intune from Jessica Yang and others


Next, Mattias Melkersen Kalvåg and Peter van der Woude look at the Intune debug toolkit and how it can help with your Intune and Autopilot deployments


If you’re looking at hotpatch for Windows 11, check out this video from Vaishnav K


Learn how to remove bloat from your Windows installs in this video from Steve Weiner


The latest intune.training video is here and covers iOS kiosks with Adam Gross and Steven Hosking


Microsoft Content

Now for the Microsoft content with a guide on understanding the different application types for macOS in Intune from Iris Yuning Ye

https://techcommunity.microsoft.com/discussions/IntuneCustomerSuccess/understanding-application-types-in-microsoft-intune-for-macos/4373987


That’s all for this week, have a great weekend!

3 thoughts on “Intune Newsletter – 7th February 2025”

Leave a Comment