Intune – macOS – Outlook App-Restriction

In post explains how to restrict institutional accounts in outlook desktop app for macOS. Currently, Intune app protection policy feature is still not available for macOS platform. Below payload was created using profile manger, using the below payload, there are plenty of other restriction can be added but the below example is targeted to preventContinue reading “Intune – macOS – Outlook App-Restriction”

Intune – macOS – Set default user from Admin to Standard

By default, Mac devices enrolled via Intune ADE, the default user account gets admin privilege due to this reason, user management is not easy. This post covers how to mitigate this issue. Intune provides a way to run shell scripts and collect logs from mac devices easily. Device Join Type: Azure AD Joined Workplace joinedContinue reading “Intune – macOS – Set default user from Admin to Standard”

Intune – Retire Managed Device and Remove stale entry from Azure AD

The below script will retire iOS device and remove the Azure AD device entry at the same time. when you retire a device from Intune it will only remove the device entry from the Intune portal but not in the Azure AD, it gets orphaned and it will remain as Azure AD Registered.  You canContinue reading “Intune – Retire Managed Device and Remove stale entry from Azure AD”

Intune – Connect MSGraph using PowerShell

In this article, I am going to show you how to connect Intune from PowerShell using registry stored credentials and also a sample script to get groups that are assigned to the volume purchased apps. Section 1: Storing Credentials in the registry It is in a way safe and easy approach to connect various azureContinue reading “Intune – Connect MSGraph using PowerShell”

Intune – Create Azure AD dynamic device groups

There are three device enrollments available for iOS devices. They are DEP(Device Enrollment Program), Apple Configurator and Corporate Identifier. For DEP and Apple configurator enrolled devices can be easily fetched using Azure AD Dynamic group using DeviceEnrollmentProfileName property but for corporate identifier devices cannot be done the same way as DEP and Apple Configurator. HereContinue reading “Intune – Create Azure AD dynamic device groups”