If an organization uses Jamf Pro to manage Mac computers, they can use Microsoft Intune compliance policies with Azure Active Directory conditional access to ensure that devices in your organization are compliant. This blogpost will explain how to setup the basic configuration if you need to integrate Jamf Pro with Microsoft Intune.To connect Microsoft Intune with Jamf Pro we need to complete the following 3 steps:Create a new application in Azure ADEnable Intune to integrate with Jamf ProConfigure Conditional Access in Jamf ProStep 1: Create an application in Azure Active DirectoryIn the Azure Portal, navigate to Azure Active Directory >…
Browsing: Intune
The Nordic Infrastructure Conference (NIC) in Oslo, Norway is one of my favorite conferences of the year! NIC is great a collaboration and learning event offering global best in class content and structure. The key concept of the conference: Less slides, more demos!The speaker list is pretty awesome, and it’s perfect mix with lots of international top speakers, Microsoft MVP’s and Community Experts!Check out the full speaker list: https://www.nicconf.com/speakers-at-nic19/I have the great pleasure myself to be delivering two sessions this year. The first one is about Protecting identities and data in the Microsoft cloud, using built-in Microsoft 365 technologies like…
Update: This feature still requires Global Admin rights! You can change and configure all the settings as “Intune Administrator” but you can’t click “Save”… This is by design!As a consultant I do a lot of Intune and Windows Autopilot projects for both small and large enterprise customers. Most of the small customers will most likely just provide me with Global Admin rights, but normally that’s not the case for large customers.If I’m there to work with Microsoft Intune, then the Intune Administrator role should be just fine. But one of the first steps we need to do, is to enable…
Just came back from an amazing week at Microsoft Campus in Redmond with 25 fellow SCCM & Intune MVP’s from all over the world. A special thanks to everyone from the Product Group that took time out of their busy calendar to spend time with us and listen to our feedback.Looking forward to come back again in March for the Global MVP Summit 2019./Ronni
IntroductionWith the release of Configuration Manager 1710, Microsoft now supports co-management, so Windows 10 clients can be managed by both SCCM and Intune at the same time. There are a few pre-requirements that need to be completed if you want to use co-management, and the most important one is that you need have your MDM authority in Intune set to Intune.The following are general prerequisites for you to enable co-management: Configuration Manager version 1710 or later Azure AD EMS or Intune license for all users Azure AD automatic enrollment enabled Intune subscription (MDM authority in Intune set to Intune)See all…
Right now, I’m sitting in a Lufthansa Airbus A380 somewhere over the Atlantic ocean. Next week, I’ll be attending the Microsoft Ignite 2017 event in Orlando, to get some insights to the latest updates and strategies from Microsoft. So why not spend the time writing this blog post! Next month I’ve been invited to present at the Lowlands Unite event in Belgium. The Lowlands Unite events are joined user group events between the Belgium and the Dutch System Center User groups, and earlier this year I was invited to the Dutch edition in Amsterdam. The event in Amsterdam was a…
I’m proud to announce that I’ve been invited to speaking about Protecting Cloud Identities using Azure MFA and EMS, at the Azure Saturday 2017 event in Copenhagen. Azure Saturday is a premium community driven event for Developers, IT-Pros and Cloud Architects. Check it out!Although it’s called Azure Saturday they could not pack all the content into one day, so the conference takes place on September 1st (Azure Friday) and September 2nd (Azure Saturday) and features both tech-talks and practical use-cases of Azure.Full Agenda : https://azuresaturday.dk/agenda/.Check out the the awesome speaker line-up: https://azuresaturday.dk/speakers/.More information and registration: https://azuresaturday.dk/.And don’t forget to follow…
Over the last 12 months, I’ve been involved in more than 25 projects with customers that wanted to enable one or more Azure AD Premium and Enterprise Mobility + Security (EMS) features that’s only available in the Classic Azure Portal. And every time I get the same questions about how to access and configure this feature.During this period Microsoft has already announced the GA for Azure Active Directory, but there are still a few features that you need to configure in the classic Azure Portal. When you navigate to the Azure Active Directory node in the Azure Portal, you’ll find…
Until now, the Apple Enrollment section in the Microsoft Azure Portal hasn’t been available, but with the 1703 release of Microsoft Intune this feature is now available.So, if your tenant was created after January 2017 you should have this feature available today. If the option isn’t available (like my test tenant from 1702), simple navigate to the old Silverlight portal and follow the link. That should send you to the right place… But within the next few weeks or so the option should be fully available directly from the Azure Portal.This is a huge and very important step in the…
This week, I created 2 new Intune tenants. One for a new customer and one for a new lab that I was preparing for our SCUG.DK User Group Meeting next week.Just to get things started, I created a simple compliance policy that check if the device is jailbroken and got the following error (in both tenants):An error occurredAn error occurred whilst saving. Request ID: 6e6d9c36-a213-40be-941a-190aa6ab2defNot much to work with, but I finally figured it out…If you configure the “Jailbroken devices” settings, and leave the “Mobile Thread Level” to the default (Not Configured) it will fail when you try to save…