Why Does This Intune Device Have No Compliance Policy Assigned
A while ago I was checking an Intune environment when I noticed a Windows device marked as Not compliant.
Nothing special so far. A device can become noncompliant for many reasons.
A while ago I was checking an Intune environment when I noticed a Windows device marked as Not compliant.
Nothing special so far. A device can become noncompliant for many reasons.
Microsoft announced that Multi Admin Approval (MAA) now also applies to Graph API calls made by apps and service principals. Until now MAA only applied when an admin made changes in the Intune portal. But that changed. From now on, automated scripts and tools that use app-only tokens are intercepted too.
Continue ReadingIn the first sip we landed on the most important mental model for Intune automation: the portal is a UI, Graph is the engine. Every click you make in Intune ends up as an HTTP request to Microsoft Graph. If you can read those requests, you can reproduce them, although the most of them. If you can reproduce them, you can automate them.
Continue ReadingMicrosoft pushed something live that many of us have been building ourselves for years. Unified Tenant Configuration Management entered public preview, and with it came something that has been missing from Microsoft 365 automation for a long time: native Intune drift monitoring.
When I started working more seriously with Intune, one thing became clear fairly quickly.
Intune is a solid product. It’s powerful, flexible, and allows you to manage a wide range of settings from a single place.
Continue ReadingMaybe you heard of it before, Graph API. It is the platform where many Microsoft Services are connected to. Think about Entra ID, Microsoft Intune, SharePoint and many more. If you want to automate things regarding these services, it’s the way to talk against the Graph API.
Continue Reading