Skip to content

Commit 898e704

Browse files
authored
Merge pull request #6914 from Erikre/erikre-doc-13680400-ID
erikre-doc-13680400-ID
2 parents 3dde522 + 7c96962 commit 898e704

1 file changed

Lines changed: 217 additions & 1 deletion

File tree

memdocs/intune/fundamentals/in-development.md

Lines changed: 217 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@ keywords:
88
author: dougeby
99
ms.author: dougeby
1010
manager: dougeby
11-
ms.date: 02/24/2022
11+
ms.date: 03/03/2022
1212
ms.topic: conceptual
1313
ms.service: microsoft-intune
1414
ms.subservice: fundamentals
@@ -76,6 +76,222 @@ This feature targets devices that operate on Android 11+. For devices that opera
7676
### Improvements to Win32 App Log collection<!-- 9978316 -->
7777
Win32 App Log collection via Intune Management Extension has moved to the Windows 10 device diagnostic platform, reducing time to collect logs from 1-2 hours to 20 minutes. We've also increased the size from 60mb to 250mb. Along with performance improvements, the app logs will also be available under the **Device diagnostics monitor** action for each device, as well as the managed app monitor. For information about how to collect diagnostics, see [Collect diagnostics from a Windows device](..\remote-actions\collect-diagnostics.md) and [Troubleshooting Win32 app installations with Intune](/troubleshoot/mem/intune/troubleshoot-win32-app-install).
7878

79+
### Feedback settings for Company Portal and Microsoft Intune apps<!-- 10012370 -->
80+
Feedback settings will be provided to address M365 enterprise feedback policies for the currently logged in user via the Microsoft 365 Apps admin center. The settings are used to determine whether feedback can be enabled or must be disabled for a user. The feature will be available for Intune Company Portal and Microsoft Intune apps.
81+
82+
### Apps UI when using Android 12L OS<!-- 12536901 -->
83+
The Android 12L OS contains new features designed to improve the Android 12 experience on large and folding dual-screen devices. Intune apps will support Android 12L when the update is released to devices.
84+
85+
### Uninstall DMG-type applications on managed macOS devices (Public preview)<!-- 13155022 -->
86+
You will be able to use the Uninstall assignment type to remove DMG-type applications on managed macOS devices from Microsoft Endpoint Manager. You can find macOS DMG apps in [Microsoft Endpoint Manager admin center](https://go.microsoft.com/fwlink/?linkid=2109431) by selecting **Apps** > **macOS** > **macOS app (.DMG)**. For related information, [Add a macOS DMG app to Microsoft Intune](../apps/lob-apps-macos-dmg.md).
87+
88+
### Deploy macOS LOB apps by uploading PKG-type installer files (Public preview)<!-- 13155147 -->
89+
You will be able to upload and deploy PKG-type installer files as macOS line-of-business apps. You can add a macOS LOB app from [Microsoft Endpoint Manager admin center](https://go.microsoft.com/fwlink/?linkid=2109431) by selecting **Apps** > **macOS** > **Add** > **Line-of-business app**. For more information about macOS LOB apps, see [How to add macOS line-of-business apps to Microsoft Intune](../apps/lob-apps-macos.md).
90+
91+
### iOS/iPadOS notifications will require upcoming March Company Portal update<!-- 9819536 -->
92+
We will be making service side updates to iOS/iPadOS notifications expected in Intune's April (2204) service release which will require users to have updated to at least the March version of the iOS/iPadOS Company Portal app. If you are using a functionality that could generate push notifications, you will want to ensure your users update the iOS/iPadOS Company Portal. There is no additional change in functionality. The Company Portal update will be released prior to the service change, so most users will likely have updated the app and will not be impacted. However, you may want to notify users of this change to ensure all users continue to receive push notifications sent by your organization. For related information, see [Update the Company Portal app](../user-help/install-a-new-version-of-the-company-portal-app.md).
93+
94+
<!-- ***********************************************-->
95+
96+
## Device management
97+
98+
### Android (AOSP) users can view all devices in Intune app<!-- 10454654 -->
99+
AOSP device users will be able to view a list of their managed devices and device properties in the Microsoft Intune app. This feature will be available on devices enrolled in Intune as user-associated (Android) AOSP devices.
100+
101+
### New reporting experience for device configuration profiles<!-- 8466004 -->
102+
You can now expect a new reporting experience for device configuration profiles. This reporting experience excludes ADMX, OEM Config, DFCI profile types.
103+
104+
We are continuing to update Intune's report experience to enhance consistency, accuracy, organization, and data representation, which will give an overall "facelift" of Intune's per policy reporting. The new experience will update the per policy overview page to shift away from donut charts to a sleeker overview chart that quickly updates as devices/users check in. There are three reports available from the per policy view:
105+
106+
- **Device and user check in status** - This report shows the full list of devices and users that have checked into using the policy and also provides the related status.
107+
- **Device assignment status** - This new report shows the list of devices and the last logged on user of the device to provide the latest device status. This report includes devices in a pending state and provides the denominator of total assigned devices and assigned users.
108+
- **Per setting status** - This report shows the state of the aggregate of devices/users that have checked in per setting. The states include error, conflict, and success.
109+
110+
More drilldowns are available and additional assignment filters are supported. For related information about reporting, see [Intune reports](../fundamentals/reports.md).
111+
112+
### See the IPv4 address and Wi-Fi subnet ID on Android Enterprise devices<!-- 12396463 -->
113+
Customers will now have the ability to see the IPv4 address and Wi-Fi subnet ID reported for AE corporate-owned fully managed, dedicated, and work profile devices.
114+
115+
### Support for bootstrap tokens on enrolled macOS devices (public preview)<!-- 9539461 -->
116+
Intune will support the use of bootstrap tokens on enrolled devices running macOS, version 10.15 or later.
117+
118+
On macOS 10.15 and later, you can use a bootstrap token to grant a secure token to mobile accounts and device enrollment-created administrator accounts.
119+
120+
On macOS 11 and later, you can use a bootstrap token to grant a secure token to any user, including standard (or local) users. Bootstrap tokens allow for non-admin users to have increased MDM permissions, and perform specific software functions on behalf of the IT admin.
121+
122+
Tokens will be supported on:
123+
- Supervised devices (in Intune, that's all user-approved enrollments)
124+
- Devices enrolled in Intune via Apple automated device enrollment
125+
126+
For more information about bootstrap tokens, see the Apple Support topic for [Using secure and bootstrap tokens](https://support.apple.com/guide/deployment/use-secure-and-bootstrap-tokens-dep24dbdcf9e/1/web/1.0).
127+
128+
### Enroll macOS virtual machines running Apple silicon<!-- 13242738 -->
129+
Use the Company Portal app for macOS to enroll virtual machines running on Apple silicon. Intune supports using macOS virtual machines for testing purposes only. For more information about how to set up macOS enrollment in Intune, see [Set up enrollment for macOS devices](../enrollment/macos-enroll.md).
130+
131+
<!-- ***********************************************-->
132+
133+
## Device configuration
134+
135+
### Google Chrome settings are in Settings Catalog and Administrative Templates <!-- 6198569 -->
136+
Currently, to configure Google Chrome settings on Windows devices, you create a custom OMA-URI device configuration policy. Google Chrome settings will be included in the Settings Catalog and Administrative Templates.
137+
138+
For more information on these policy types, see:
139+
- [Use the settings catalog to configure settings on Windows and macOS devices](../configuration/settings-catalog.md)
140+
- [Use ADMX templates to configure group policy settings in Microsoft Intune](../configuration/administrative-templates-windows.md)
141+
142+
Applies to:
143+
- Windows 10/11
144+
145+
### Android (AOSP) will support scope tags and RBAC settings<!-- 8503981 -->
146+
When you create a policy for Android (AOSP), you can use role-based access control (RBAC) and scope tags.
147+
148+
For more information on these features, see:
149+
- [Role-based access control (RBAC) with Microsoft Intune](../fundamentals/role-based-access-control.md)
150+
- [Use RBAC and scope tags for distributed IT](../fundamentals/scope-tags.md)
151+
152+
Applies to:
153+
- Android Open Source Project (AOSP)
154+
155+
### Endpoint security profiles support filters; See the filter status on a device configuration profile report<!-- 11889620 -->
156+
There are some new features when using filters:
157+
- When you create a device configuration profile for Windows devices, a per-policy report will show reporting information in the **Device and user check-in status** (**Devices** > **Configuration profiles** > Select an existing policy).
158+
159+
When you select **View report**, the report has an **Assignment Filter** column. Use this column to determine if a filter successfully applied to your policy.
160+
161+
- Endpoint Security policies will support filters. So, when you assign an endpoint security policy, you can use filters to assign the policy based on rules you create.
162+
- When you create a new endpoint security policy, it will automatically use the [new device configuration profile reporting](../fundamentals/in-development.md#new-reporting-experience-for-device-configuration-profiles). When you look at the per-policy report, it also has an **Assignment Filter** column (**Devices** > **Configuration profiles** > Select an existing endpoint security policy > **View report**). Use this column to determine if a filter successfully applied to your policy.
163+
164+
For more information on filters, see:
165+
- [Use filters when assigning your apps, policies, and profiles](filters.md)
166+
- [List of platforms, policies, and app types supported by filters](filters-supported-workloads.md)
167+
168+
Applies to:
169+
- All platforms
170+
171+
Does not apply to:
172+
- Administrative Templates (Windows 10/11)
173+
- Device Firmware Configuration Interface (DFCI) (Windows 10/11)
174+
- OEMConfig (Android Enterprise)
175+
176+
### Use the Settings Catalog to create a Universal Print policy on Windows 11 devices<!-- 5513123 -->
177+
Many organizations are moving their printer infrastructure to the cloud. [Universal Print](/universal-print/fundamentals/universal-print-whatis) is a cloud-based printing solution for Microsoft 365 customers. It uses built-in cloud printers, built-in legacy printers, and runs entirely in Microsoft Azure. When Universal Print is deployed with Universal Print-compatible printers, it doesn't require any on-premises infrastructure.
178+
179+
In the Endpoint Manager admin center, you'll be able to use the Settings Catalog to create a printer policy (**Device configuration** > **Create profile** > **Windows 10 and later** for platform > **Settings catalog** for profile type > **Printer provisioning**). When you deploy the policy, users select the printer from a list of registered Universal Print printers, and can also select a default printer.
180+
181+
Currently, you must use the [Universal Print printer provisioning tool](/universal-print/fundamentals/universal-print-intune-tool), which requires more manual steps, and has some limitations.
182+
183+
Applies to:
184+
- Windows 11
185+
186+
### New macOS settings in the Settings Catalog<!-- 13111526 -->
187+
188+
The Settings Catalog will have new macOS settings you can configure (**Devices** > **Configuration profiles** > **Create profile** > **macOS** for platform >**Settings catalog (preview)** for profile type):
189+
190+
**User Experience > Accessibility**:
191+
- Close View Far Point
192+
- Close View Hotkeys Enabled
193+
- Close View Near Point
194+
- Close View Scroll Wheel Toggle
195+
- Close View Smooth Images
196+
- Contrast
197+
- Flash Screen
198+
- Mouse Driver
199+
- Mouse Driver Cursor Size
200+
- Mouse Driver Ignore Trackpad
201+
- Mouse Driver Initial Delay
202+
- Mouse Driver Max Speed
203+
- Slow Key
204+
- Slow Key Beep On
205+
- Slow Key Delay
206+
- Stereo as Mono
207+
- Sticky Key
208+
- Sticky Key Beep On Modifier
209+
- Sticky Key Show Window
210+
- Voice Over On Off Key
211+
- White On Black
212+
213+
**Air Play**:
214+
- Allow List
215+
- Password
216+
217+
**User Experience > Desktop**:
218+
- Override Picture Path
219+
220+
**Preferences > Global Preferences**:
221+
- Auto Log Out Delay
222+
- Multiple Session Enabled
223+
224+
**Printing > Printing**:
225+
- Require Admin To Print Locally
226+
227+
**Security > Security Preferences**:
228+
- Do Not Allow Firewall UI
229+
- Do Not Allow Lock Message UI
230+
- Do Not Allow Password Reset UI
231+
232+
**Preferences > System Preferences**:
233+
- Disabled Preference Panes
234+
- Enabled Preference Panes
235+
236+
**Preferences > User Preferences**:
237+
- Disable Using Cloud Password
238+
239+
The following settings will also be in Settings Catalog. Currently, they're only available in Templates:
240+
241+
**Printing > Air Print**:
242+
- Force TLS
243+
- Port
244+
245+
**Login > Login Items**:
246+
- Hide
247+
248+
**Login > Login Window Behavior**:
249+
- Admin Host Info
250+
- Allow List
251+
- Deny List
252+
- Disable Console Access
253+
- Disable Screen Lock Immediate
254+
- Hide Admin Users
255+
- Hide Local Users
256+
- Hide Mobile Accounts
257+
- Include Network User
258+
- Log Out Disabled While Logged In
259+
- Login Window Text
260+
- Power Off Disabled While Logged In
261+
- Restart Disabled
262+
- Restart Disabled While Logged In
263+
- Show Full Name
264+
- Show Other Users Managed
265+
- Shut Down Disabled
266+
- Shut Down Disabled While Logged In
267+
- Sleep Disabled
268+
269+
**System Policy > System Policy Control**:
270+
- Allow Identified Developers
271+
- Enable Assessment
272+
273+
**System Policy** > **System Policy Managed**:
274+
- Disable Override
275+
276+
There isn't any conflict resolution between policies created using the Settings catalog and policies created using Templates. When creating new policies in the Settings Catalog, be sure there are no conflicting settings with your current policies.
277+
278+
For more information about configuring Settings catalog profiles in Intune, see [Create a policy using settings catalog in Microsoft Intune](../configuration/settings-catalog.md).
279+
280+
Applies to:
281+
- macOS
282+
283+
<!-- ***********************************************-->
284+
285+
## Monitor and troubleshoot
286+
287+
### AppxPackaging event viewer is part of collect diagnostics<!-- 12809781 -->
288+
Intune's remote action to [Collect diagnostics](../remote-actions/collect-diagnostics.md) will soon collect additional details from Windows devices.  (**Devices** > **Windows** > *select a Windows device* > **Collect diagnostics**)
289+
290+
The new details include the **Microsoft-Windows-AppxPackaging/Operational** Event Viewer and the following office log files to assist in troubleshooting office installation issues:
291+
292+
`%windir%\temp\%computername%*.log`<br>
293+
`%windir%\temp\officeclicktorun*.log`
294+
79295
<!-- ***********************************************-->
80296

81297
## Notices

0 commit comments

Comments
 (0)