Skip to content

Commit d166226

Browse files
authored
Merge pull request #6383 from MicrosoftDocs/release-intune-2112
Release intune 2112
2 parents 83d8c2d + 4109ff9 commit d166226

13 files changed

Lines changed: 129 additions & 47 deletions

memdocs/intune/apps/apps-supported-intune-apps.md

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ keywords:
66
author: Erikre
77
ms.author: erikre
88
manager: dougeby
9-
ms.date: 11/04/2021
9+
ms.date: 12/06/2021
1010
ms.topic: conceptual
1111
ms.service: microsoft-intune
1212
ms.subservice: apps
@@ -159,6 +159,7 @@ The following apps support the core Intune App Protection Policy settings. Apps
159159
| **FactSet 3.0**<p><img alt="Partner app - FactSet 3.0 icon" src="./media/apps-supported-intune-apps/icon-p-factset-icon.png" width="100"> | FactSet delivers superior analytics, service, content, and technology to help investment professionals see and seize opportunity sooner. Our Factset 3.0 app is a phone optimized experience that allows our subscribing users to leverage the power and intelligence of the FactSet workstation anytime, anywhere. | [Google Play link (Android)](https://play.google.com/store/apps/details?id=com.factset.wireless),<br>[App Store link (iOS)](https://apps.apple.com/app/factset-3-0/id1464041112) |
160160
| **FleetSafe‪r**<p><img alt="Partner app - FleetSafe‪r icon" src="./media/apps-supported-intune-apps/icon-p-fleet.png" width="100"> | FleetSafer is a risk measurement and mitigation tool that enforces communications policies and monitors safe driving practices. FleetSafer requires a Cogosense enterprise account. FleetSafer uses GPS or a connected cogoB smart device to automatically engage when driving movement is detected, disabling access to the device and silencing all calls and notifications. Calling, text, social, and email functionality is disabled. Driving behavior is monitored. | [Google Play link (Android)](https://play.google.com/store/apps/details?id=com.aegismobility.guardian),<br>[App Store link (iOS)](https://apps.apple.com/app/id957483278) |
161161
| **Fuze Mobile for Intune**<p><img alt="Partner app - Fuze Mobile for Intune icon" src="./media/apps-supported-intune-apps/icon-p-fuze.png" width="100"> | Fuze Mobile for Intune allows end users to communicate using voice calling, video meetings, contact center, chat messaging, and content sharing. Admins can deploy Fuze Mobile securely and at scale in a BYOD context. Fuze Mobile for Intune requires both a Fuze account and a Microsoft managed environment. | [Google Play link (Android)](https://play.google.com/store/apps/details?id=com.fuze.fuzeappmdm),<br>[App Store link (iOS)](https://apps.apple.com/app/fuze-mobile-for-intune/id1530095324) |
162+
| **Groupdolists**<p><img alt="Partner app - Groupdolists icon" src="./media/apps-supported-intune-apps/icon-p-groupdolists.png" width="100"> | Groupdolists helps to coordinates incident response teams, whether corporate or public sector, in a single organization or across multiple organizations. Groupdolists creates a common operating picture between all responders, wherever they are, and synchronizes their efforts in real time.<p><p>Benefits include the following:<ul><li>Groupdolists brings emergency (and everyday) operating procedures to interactive life.</li><li>Groupdolists pushes task lists to response teams, regardless of their location or device, instantly synchronizing what needs to be done and by whom, as well as confirming completed tasks in chronological order.</li><li>Groupdolists increases transparency, provides greater accountability, and offers a "leadership view" for those who need to see but not touch.</li><li>Groupdolists instantly synchronizes not just tasks, but photos, videos, links, comments, and documents to all team members. Everything you use is available for reference and action.</li><li>Groupdolists provides complete after-action documentation in both PDF and Excel formats.</li></ul> | [Google Play link (Android)](https://play.google.com/store/apps/details?id=com.groupdolists.android&hl=en_CA&gl=US),<br>[App Store link (iOS)](https://apps.apple.com/us/app/groupdolists/id1260967873) |
162163
| **Hearsay Relate for Intune**<p><img alt="Partner app - Hearsay Relate for Intune icon" src="./media/apps-supported-intune-apps/icon-p-hearsay-relate-icon.png" width="100"> | Hearsay Relate for Intune enables advisors to manage and nurture their book of business in a protected BYOD environment with mobile application management (MAM). This version of Hearsay Relate allows IT administrators to protect corporate data while keeping advisors in touch with their book of business.<br><br> Hearsay Relate, a mobile application that enables financial services professionals to move business forward. Leverage compliant texting and seamless voice calling to connect with your entire book of business. Stay productive with calendar integration to set appointments, and schedule reminder messages for upcoming meetings, birthday greetings, and more.<br>Hearsay Relate for Intune gives enterprise users all the features they expect from Hearsay Relate, while providing IT administrators the MAM functionality they need to keep corporate data safe. In the event of a lost or stolen device, IT can remove Hearsay Relate for Intune from the device along with any sensitive data associated with it. | [Google Play link (Android)](https://play.google.com/store/apps/details?id=com.hearsaysocial.messages.intune),<br>[App Store link (iOS)](https://apps.apple.com/app/hearsay-relate-for-intune/id1501771956) |
163164
| **HowNow**<p><img alt="Partner app - HowNow icon" src="./media/apps-supported-intune-apps/icon-p-hownow-icon.png" width="100"> | Use HowNow to get all the knowledge you need, everywhere you work. You can bring together the knowledge, business intelligence, and insights you need from a variety of internal and external sources. HowNow is tailored to you by personalizing learning for you based on your role, business goals, skill requirements, performance, and work you’re doing. You can teach, learn, and share knowledge with your team in any format you like at anytime, from anywhere. | [Google Play link (Android)](https://play.google.com/store/apps/details?id=com.hownow.gethownow),<br>[App Store link (iOS)](https://apps.apple.com/app/hownow/id1464131703) |
164165
| **iAnnotate for Intune/O365**<p><img alt="Partner app - iAnnotate for Intune/O365 icon" src="./media/apps-supported-intune-apps/icon-p-iannotate-for-intune.png" width="100">| Designed for Microsoft Intune enterprise users, iAnnotate for Intune/O365 allows you to read, annotate, and share PDFs, Microsoft Office files, images and web pages. Seamlessly integrate with OneDrive and Outlook, while easily converting all MS documents to PDFs for quick markup. IT administrators must visit https://enterprise.iannotate.com/ to activate a 30-day free trial and to view the iAnnotate for Intune deployment guide. | [App Store link (iOS)](https://apps.apple.com/app/iannotate-for-intune-o365/id1567388828) |
10.1 KB
Loading

memdocs/intune/configuration/administrative-templates-configure-edge.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,7 @@ description: Add or create settings using ADMX administrative templates to confi
44
ms.author: mandia
55
author: MandiOhlinger
66
manager: dougeby
7-
ms.date: 11/04/2021
7+
ms.date: 12/16/2021
88
audience: ITPro
99
ms.topic: how-to
1010
ms.service: microsoft-intune
@@ -15,7 +15,7 @@ ms.localizationpriority: high
1515

1616
#ROBOTS:
1717

18-
ms.reviewer:
18+
ms.reviewer: mikedano
1919
ms.suite: ems
2020
ms.custom: intune-azure
2121
ms.collection: M365-identity-device-management
@@ -35,7 +35,7 @@ This article applies to:
3535
For Microsoft Edge version 45 and earlier, see [Microsoft Edge Browser device restrictions](device-restrictions-windows-10.md#microsoft-edge-legacy-version-45-and-older).
3636

3737
> [!NOTE]
38-
> Additional ADMX settings for Edge 95 and Edge updater have been added to Administrative Templates. This includes support for "Target Channel override" which allows customers to opt into the **[Extended Stable](https://blogs.windows.com/msedgedev/2021/07/15/opt-in-extended-stable-release-cycle/)** release cycle option at any point using Group Policy or through Intune.
38+
> Additional ADMX settings for Edge 96 and Edge updater have been added to Administrative Templates. This includes support for "Target Channel override" which allows customers to opt into the **[Extended Stable](https://blogs.windows.com/msedgedev/2021/07/15/opt-in-extended-stable-release-cycle/)** release cycle option at any point using Group Policy or through Intune.
3939
4040
When you use Intune to manage and enforce policies, it's similar to using Active Directory group policy, or configuring local Group Policy Object (GPO) settings on user devices. But, Intune is 100% cloud.
4141

memdocs/intune/configuration/device-profile-monitor.md

Lines changed: 9 additions & 12 deletions
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ keywords:
77
author: MandiOhlinger
88
ms.author: mandia
99
manager: dougeby
10-
ms.date: 02/24/2021
10+
ms.date: 12/16/2021
1111
ms.topic: how-to
1212
ms.service: microsoft-intune
1313
ms.subservice: configuration
@@ -20,15 +20,15 @@ ms.assetid: 9deaed87-fb4b-4689-ba88-067bc61686d7
2020
#ROBOTS:
2121
#audience:
2222

23-
ms.reviewer: karthib
23+
ms.reviewer: laarrizz
2424
ms.suite: ems
2525
search.appverid: MET150
2626
#ms.tgt_pltfrm:
2727
ms.custom: intune-azure
2828
ms.collection: M365-identity-device-management
2929
---
3030

31-
# Monitor device profiles in Microsoft Intune
31+
# Monitor device configuration profiles in Microsoft Intune
3232

3333
Intune includes some features to help monitor and manage your device configuration profiles. For example, you can check the status of a profile, see which devices are assigned, and update the properties of a profile.
3434

@@ -44,31 +44,31 @@ All of your profiles are shown. You also see the platform, the type of profile,
4444
After you create your device profile, Intune provides graphical charts. These charts display the status of a profile, such as it being successfully assigned to devices, or if the profile shows a conflict.
4545

4646
1. Select an existing profile. For example, select a macOS profile.
47-
2. Select the **Overview** tab. In this view, the policy assignment includes the following statuses:
47+
2. Select the **Overview** tab. In this view, the **Profile assignment** includes the following statuses:
4848

49-
- **Succeeded**: Policy is applied
49+
- **Completed**: Policy is applied successfully.
5050
- **Error**: The policy failed to apply. The message typically displays with an error code that links to an explanation.
5151
- **Conflict**: Two settings are applied to the same device, and Intune can't sort out the conflict. An administrator should review.
5252
- **Pending**: The device hasn't checked in with Intune to receive the policy yet.
5353
- **Not applicable**: The device can't receive the policy. For example, the policy updates a setting specific to iOS 11.1, but the device is using iOS 10.
5454

5555
3. The top graphical chart shows the number of devices assigned to the device profile. For example, if the configuration device profile applies to macOS devices, the chart lists the count of the macOS devices.
5656

57-
It also shows the number of devices for other platforms that are assigned the same device profile. For example, it shows the count of the non-macOS devices.
57+
It can also show the number of devices for other platforms that are assigned the same device profile. For example, it shows the count of the non-macOS devices.
5858

5959
:::image type="content" source="./media/device-profile-monitor/device-configuration-profile-graphical-chart.png" alt-text="See or view the number of devices assigned to the device profile in Microsoft Intune and Endpoint Manager admin center.":::
6060

6161
The bottom graphical chart shows the number of users assigned to the device profile. For example, if the configuration device profile applies to macOS users, the chart lists the count of the macOS users.
6262

6363
4. Select the top graphical chart. **Device status** opens.
6464

65-
The devices assigned to the profile are listed, and it shows if the profile is successfully deployed. Also note that it only lists the devices with the specific platform (for example, macOS).
65+
The devices assigned to the profile are listed, and it shows the deployment status. Also note that it only lists the devices with the specific platform (for example, macOS).
6666

6767
Close the **Device status** details.
6868

6969
5. Select the circle in the bottom graphical chart. **User status** opens.
7070

71-
The users assigned to the profile are listed, and it shows if the profile is successfully deployed. Also note that it only lists the users with the specific platform (for example, macOS).
71+
The users assigned to the profile are listed, and it shows the deployment status. Also note that it only lists the users with the specific platform (for example, macOS).
7272

7373
Close the **User status** details.
7474

@@ -94,13 +94,10 @@ In **Devices** > **All devices**, you can see any settings that are causing a co
9494
Now that you know the conflicting setting, and the policies that include that setting, it should be easier to resolve the conflict.
9595

9696
> [!TIP]
97-
> In **Devices** > **Monitor**, a list of all policies are shown, and how many devices have errors, conflicts, and more. For more information on the available reporting data, see [Intune reports](../fundamentals/reports.md).
97+
> In **Devices** > **Monitor**, a list of all policies are shown. The **Assignment failures (preview)** report helps troubleshoot errors and conflicts for configuration profiles that are assigned. For more information on the available reporting data, see [Intune reports](../fundamentals/reports.md).
9898
9999
## Device Firmware Configuration Interface profile reporting
100100

101-
> [!WARNING]
102-
> Monitoring DFCI profiles is currently being created. While DFCI is in public preview, monitoring data may be missing or incomplete.
103-
104101
DFCI profiles are reported on a per-setting basis, just like other device configuration profiles. Depending on the manufacturer's support of DFCI, some settings may not apply.
105102

106103
With your DFCI profile settings, you may see the following states:

memdocs/intune/configuration/device-restrictions-android-for-work.md

Lines changed: 31 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ keywords:
77
author: MandiOhlinger
88
ms.author: mandia
99
manager: dougeby
10-
ms.date: 12/08/2021
10+
ms.date: 12/16/2021
1111
ms.topic: conceptual
1212
ms.service: microsoft-intune
1313
ms.subservice: configuration
@@ -20,7 +20,7 @@ ms.technology:
2020

2121
params:
2222
siblings_only: true
23-
ms.reviewer: mikedano, chmaguir, chrisbal, priyar
23+
ms.reviewer: shthilla, chmaguir, chrisbal, priyar
2424
ms.suite: ems
2525
search.appverid: MET150
2626
#ms.tgt_pltfrm:
@@ -45,14 +45,12 @@ For Android device administrator, see [Android and Samsung Knox Standard device
4545

4646
## Before you begin
4747

48-
When configuring device restriction policies, the broad range of settings enable you to tailor protection to your specific needs. To better understand how to implement specific security configuration scenarios, see the security configuration framework guidance for Android Enterprise device restriction policies.
48+
- Create an [Android device administrator device restrictions configuration profile](device-restrictions-configure.md).
4949

50-
The security configuration framework is organized into distinct configuration levels that provide guidance for personally owned and supervised devices, with each level building off the previous level. The available levels and settings in each level vary by enrollment mode:
50+
- When creating device restriction policies, there are many settings available. To help determine the settings that are right for your organization, you can use the security configuration framework guidance:
5151

52-
- For Android Enterprise personally-owned work profile devices: [Android personally-owned work profile security settings](../enrollment/android-work-profile-security-settings.md)
53-
- For Android Enterprise fully managed, dedicated, and corporate-owned work profile devices: [Android fully managed-security settings](../enrollment/android-fully-managed-security-settings.md)
54-
55-
When ready to proceed, create an [Android device administrator device restrictions configuration profile](device-restrictions-configure.md).
52+
- [Android Enterprise personally-owned work profile security settings](../enrollment/android-work-profile-security-settings.md)
53+
- [Android Enterprise fully managed, dedicated, and corporate-owned work profile security settings](../enrollment/android-fully-managed-security-settings.md)
5654

5755
## Fully managed, dedicated, and corporate-owned work profile
5856

@@ -161,6 +159,31 @@ For corporate-owned devices with a work profile, some settings only apply in the
161159

162160
- **Contact sharing via Bluetooth (work profile-level)**: **Block** prevents users from sharing their work profile contacts with devices over Bluetooth. When set to **Not configured** (default), Intune doesn't change or update this setting. By default, the OS might allow users to share their contacts via Bluetooth.
163161

162+
- **Search work contacts and display work contact caller-id in personal profile**: In the personal profile, **Block** prevents users from searching work contacts, and showing work caller ID information.
163+
164+
When set to **Not configured** (default), Intune doesn't change or update this setting. By default, the OS might allow searching work contacts, and show work caller IDs.
165+
166+
[ShowWorkContactsInPersonalProfile](https://developers.google.com/android/management/reference/rest/v1/enterprises.policies#showworkcontactsinpersonalprofile)
167+
168+
- **Copy and paste between work and personal profiles**: **Allow** lets users copy and paste data between the work and personal profiles.
169+
170+
When set to **Not configured** (default), Intune doesn't change or update this setting. By default, the OS might:
171+
172+
- Prevent users from pasting text into the personal profile that's copied from the work profile.
173+
- Allow users to copy text from the personal profile, and paste into the work profile.
174+
- Allow users to copy text from the work profile, and paste into the work profile.
175+
176+
[CrossProfileCopyPaste](https://developers.google.com/android/management/reference/rest/v1/enterprises.policies#crossprofilecopypaste)
177+
178+
- **Data sharing between work and personal profiles**: Choose if data can be shared between work and personal profiles. Your options:
179+
180+
- **Device default**: Intune doesn't change or update this setting. By default, the OS might prevent users from sharing data in the work profile with the personal profile. Data in the personal profile can be shared in the work profile.
181+
- **Block all sharing between profiles**: Prevents users from sharing data between the work and personal profiles.
182+
- **Block sharing from work to personal profile**: Prevents users from sharing data in the work profile with the personal profile. Data in the personal profile can be shared with the work profile.
183+
- **No restrictions on sharing**: Data can be shared between the work and personal profiles.
184+
185+
[CrossProfileDataSharing](https://developers.google.com/android/management/reference/rest/v1/enterprises.policies#crossprofiledatasharing)
186+
164187
### System security
165188

166189
- **Threat scan on apps**: **Require** (default) enables Google Play Protect to scan apps before and after they're installed. If it detects a threat, it may warn users to remove the app from the device. When set to **Not configured**, Intune doesn't change or update this setting. By default, the OS might not enable or run Google Play Protect to scan apps.

0 commit comments

Comments
 (0)