Android Remote help using Intune
16:36
BlackHat USA Briefings 2023
1:24
10 ай бұрын
Our MVP Summit recap: 2023
11:14
Жыл бұрын
Пікірлер
@KenanAydiner
@KenanAydiner 20 сағат бұрын
my company has default domain xxxy.local how can i add it ? can u tell me ?
@_____1826
@_____1826 Күн бұрын
So microsoft intune is free or paid service?
@AlfredoAlegrett
@AlfredoAlegrett Күн бұрын
Thank you for posting real life and not the pre-stage expirience. It makes me feel better to know that it is not me and that others are in the same boat. Thank you.
@AlfredoAlegrett
@AlfredoAlegrett Күн бұрын
Did you every post the 3rd edition of the Hybrid joined Autopilot, will really help. Thank you
@gearexod
@gearexod 2 күн бұрын
How can i deploy Windows Autopatch on Servers by Intune? i neen some complement apart?
@haydendixon971
@haydendixon971 2 күн бұрын
I keep getting error 5 any ideas?
@JPeezy789
@JPeezy789 3 күн бұрын
Thanks sir, I was having issues putting in the correct data into GoDaddy. Helped to have your screen as a reference to compare to. My custom domain is now verified!
@jalalhaider83
@jalalhaider83 4 күн бұрын
Why clients don't work? The guide says client 1-2 are domain joined but when you take connect to any of the client, it throws an error any idea why???? Like windows corruption etc on clients
@jojolization
@jojolization 4 күн бұрын
how about the external email party? i pressume the recipent didn't trust the Microsoft cloud pki CA cert, so it is quite strange for users to send the encrypted email to external, is it right?
@lazynow1
@lazynow1 6 күн бұрын
you are assuming that people trust the OEM OS build fuck stick......
@TyKLPS
@TyKLPS 8 күн бұрын
Any idea why my VPP token won't populate when creating a Profile?
@ragon747
@ragon747 8 күн бұрын
This device remote feature works on iphones as well ? Edit: Only supports those platforms Windows 10/11 Windows 11 em dispositivos ARM64 Windows 10 em dispositivos ARM64 Windows 365 Android Enterprise Dedicado (dispositivos Samsung e Zebra) macOS 12, 13 e 14
@Catonkey1
@Catonkey1 8 күн бұрын
If we already own for example 50 iphones, will this method work? Or do they have to be phones bought after the fact you've signed up and purchased them through the Apple Business Manager?
@theCMC
@theCMC 6 күн бұрын
You can setup ABM before purchasing Apple devices. Then either have your distributor or Apple add the devices to ABM as you buy them. If you have devices before you setup ABM then retrospectively have your distributor add them if that’s possible or the alternative is add them manually but that’s time consuming. See other videos for the manual process
@itips4021
@itips4021 9 күн бұрын
An excellent detailed coherent logically constructed video - if only all instructive video's were this incisive & clear! 👍👏
@theCMC
@theCMC 6 күн бұрын
Thank you for the great feedback 🙏
@synergy14nerd
@synergy14nerd 9 күн бұрын
2 years later and this video still holds up!!! I caught my issue the first few minutes in but decided to stay and verify everything else was set and wow! Great video my man, thank you!!
@theCMC
@theCMC 9 күн бұрын
Thank you! Funny you should mention that - I released the updated version this week! kzfaq.info/get/bejne/q8Bidqpm3J-WcaM.htmlsi=2q-2oHMJhKoSQ_pE
@synergy14nerd
@synergy14nerd 9 күн бұрын
@@theCMC dang! That is a coincidence! I will be reviewing that in the AM when I’m working on my new tenet’s Autopilot setup before I roll it out for the first test drive! Cheers mate!
@AbdullahOllivierreIT
@AbdullahOllivierreIT 11 күн бұрын
This video demonstrates how to manually add an iPhone to Apple Business Manager (ABM) using the Apple Configurator app. Here's a summary of the key steps: 1. Prerequisites: o Apple Configurator 2 or above installed on a Mac running macOS 12.4 or later. o Your iPhone must be reset to factory settings. o You need an Apple Business Manager account. o You need an MDM server, like Microsoft Intune, to manage the device. 2. Create a Wi-Fi profile: o This profile is used by the iPhone to connect to your network and access Apple activation services. 3. Add iPhone to ABM: o Connect your iPhone to your Mac. o Open the Apple Configurator app and select your iPhone. o Prepare the device by erasing it. 4. Assign to MDM Server: o In ABM, assign the iPhone to your MDM server (e.g., Intune). 5. Enroll in Intune: o After the device is assigned to your MDM server, you can then enroll it in Intune. This process will be covered in a separate video. Important Points: • Manually added devices have a 30-day provisional period before they must be removed from ABM or MDM. • The device will be erased during the process, so make sure to back up any important data. • You will need to generate a supervision identity and choose your network profile during the preparation process. • The video mentions that some users may encounter an error during the preparation stage. If this happens, it may still be possible to add the device to ABM, but you will need to assign the device to your MDM server afterwards. Overall, this video provides a step-by-step guide on how to manually add an iPhone to ABM using the Apple Configurator app. It is a useful resource for anyone who needs to add existing devices to their Apple Business Manager account.
@nazmulislam5807
@nazmulislam5807 11 күн бұрын
At what point do you get asked to set up MFA for new user?
@theCMC
@theCMC 7 күн бұрын
MFA is a user identity security process. Its not until the end user then switches the device on and enrols with their credentials and MFA if switched on will appear. The end user experience will also go through the ESP setup. You will see the MFA prompt at 25:18 in this video.
@w.g.castro6359
@w.g.castro6359 17 күн бұрын
Really well explained, Thanks!
@theCMC
@theCMC 6 күн бұрын
Thank you glad you liked it 🙏
@JoeZoch
@JoeZoch 18 күн бұрын
Does anyone know how to get get past the banner limit? Our legal disclaimer is longer than what Intune for Mac allows.
@mbaker82
@mbaker82 18 күн бұрын
lol if your lucky…. Everything fine…
@twenty94470
@twenty94470 20 күн бұрын
The prompt before sign-out is not new, i've configured it month ago. But it was broken. I will try monday if it fix now
@theCMC
@theCMC 6 күн бұрын
How did you get on ?
@jamesjosephrooney
@jamesjosephrooney 20 күн бұрын
Hi Andy - thanks for the video series it's really helpful. I've recently purchased a MAC and wanted to add it to apple BM manually. I didn't realise you needed an iPhone to do this so I've now acquired an Iphone.... So my question is what order do I need to get these devices enrolled? Ive got my apple business manager account setup and connected to Intune. But when I sign into the app store on my Mac to get the configurator app its greyed out. So I have to use another apple ID to get it. Now I've got it, do I first need to setup the configurator on my mac, enrol the iPhone & then use configurator on the iphone to enrol the mac? Thanks
@sunnykgaming2541
@sunnykgaming2541 24 күн бұрын
how come i dont get the add device to org page ??
@Sanriolover830
@Sanriolover830 16 күн бұрын
Hold your iPhone close to the macbook while configurator 2 scanner is opened. It works via BT I guess.
@vavan100
@vavan100 24 күн бұрын
Nice thing about this, you can use this as rollback too. Select to uninstall new and install old.
@ashokverma3004
@ashokverma3004 25 күн бұрын
Great show, thank u
@sunnykgaming2541
@sunnykgaming2541 28 күн бұрын
can you not a a device that is already setup ?
@theCMC
@theCMC 22 күн бұрын
It needs to be erased. support.apple.com/en-gb/guide/apple-configurator/apd738b2e516/1.1/ios/17.0
@sunnykgaming2541
@sunnykgaming2541 29 күн бұрын
I want to add existing intune macos devices to Apple business manager. is that possible ?
@theCMC
@theCMC 22 күн бұрын
Only by using Apple Config v2 on an iOS device. But you will need to wipe an re-enrol
@sunnykgaming2541
@sunnykgaming2541 22 күн бұрын
@@theCMC hi, i was able to figure this out. now im thinking since I have intune. does it make sense to setup user accounts for users on abm or just focus on managing them on intune:?
@sunnykgaming2541
@sunnykgaming2541 29 күн бұрын
getting topic id doesnt match the existing certificate
@theCMC
@theCMC 22 күн бұрын
Did you resolve this. Do you have a screenshot ?
@EntraineurPerth
@EntraineurPerth 29 күн бұрын
Great video with clear instructions. Thank you - it worked beautifully.
@dineshchaudhary2918
@dineshchaudhary2918 Ай бұрын
Why is it necessary to assign the MDM server .... If not assign the server then devices will not replicate in the intune
@papajohnscookie
@papajohnscookie Ай бұрын
Thanks for video, do you know if this is compatible with Google Zero Touch? It's a shame the user enrollment stage isn't slightly more simple, I'm not sure our end users would be able to figure this out on their own (especially being that they sign into 'Intune' rather than 'Company Portal' which they are used to). I will give this a try with a small group of users.
@theCMC
@theCMC Ай бұрын
I’m guessing they will be 2 different enrolment options as G zero touch is there to simplify the whole enrolment experience, but worth looking into 👍
@xEle360x
@xEle360x Ай бұрын
What if the uninstall file is in an app data folder? How would you translate that without using the user name? %appdata%?
@theCMC
@theCMC Ай бұрын
Great question. Let me test. I’ll get back to you.
@xEle360x
@xEle360x Ай бұрын
@@theCMC I think its %appdata%\ so for example zoom would be C:\Users\<user>\AppData\Roaming\Zoom\uninstall translates to %appdata%\zoom\uninstall
@xEle360x
@xEle360x Ай бұрын
@@theCMC Confirmed, see other reply
@taman82
@taman82 Ай бұрын
Thanks for being the first to demonstrate the new Android Device Staging enrolment on KZfaq. I got to test out the new enrolment method this week since it was announced. I tested the enrolment on Android Enterprise Corporate-owned fully managed. However, I observed an issue with the PIN code setup during testing. Current Behaviour: • Users do not receive a prompt to set up a device PIN code after completing device registration. • Intune marks the device as non-compliant and emails the user to set up a PIN code. Desired Behaviour: • The process should prompt users to set up a PIN code either before or immediately after device registration. Observations: • There is no notification prompt for PIN code setup when users sign in to the Intune app to complete device registration. • The prompt only appears after the device syncs with Intune and undergoes a compliance policy check. • This approach is not user-friendly and could pose a security risk if a device is left unprotected without a PIN code. Have you noticed that yet?
@ScottdMest
@ScottdMest Ай бұрын
Exactly the same experience here. Big down side with regards to forcing the user to set a pin. That will unfortunately cause more help desk tickets. Another thing I struggled to get fully deployed during the staging was the MS Launcher. All policies and profiles relating to the launcher were device assigned, but I just couldn't get the launcher to be the default home screen during the staging. This led to a less than perfect user experience, receiving a phone without company branding and without a customised home screen until a few mins after they sign into Intune Company Portal. Missed opportunity to give a really smooth user experience.
@theCMC
@theCMC Ай бұрын
Thanks good feedback
@taman82
@taman82 Ай бұрын
@@ScottdMest looks like I'll be sticking with the old method until Google/Intune figure out a better way to deploy the policies correctly
@theCMC
@theCMC Ай бұрын
Am going to look into this issues
@adrianbishop694
@adrianbishop694 Ай бұрын
Also, the sign-in to the intune app should be forced without anyway to bypass otherwise some will just never sign in
@ncdlloyd
@ncdlloyd Ай бұрын
Thanks, useful stuff
@Consolex666
@Consolex666 Ай бұрын
My child was a month old when you made this video, what blast from the past.
@theCMC
@theCMC Ай бұрын
😅
@theCMC
@theCMC Ай бұрын
June 2021… wow.
@Abhi-ou3zf
@Abhi-ou3zf Ай бұрын
Failed to add application on 04:26 , Showing error : We didn't find any results for 7zip. Kindly help
@dineshchaudhary2918
@dineshchaudhary2918 Ай бұрын
Please upload more videos to understand how to manage ISO and mac devices effectively from intune
@theCMC
@theCMC 22 күн бұрын
Dinesh have you seen my other videos in the playlist ? Is there anything specific you are looking for ?
@MarcusRoberts-os4nu
@MarcusRoberts-os4nu Ай бұрын
Is it possible for a user to BYOD and have a local personal account along with a work local account? Keeping all data separate?
@theCMC
@theCMC 22 күн бұрын
Marcus, with user enrolment after authentication and enrolment to Intune a managed Apple ID account is added to the device for accessing configured Apple services and apps. This can coexist with your local account so access to personal data still exists and is separate yes. Have a look here support.apple.com/en-gb/guide/deployment/dep23db2037d/web
@imfuctifino
@imfuctifino Ай бұрын
i'm looking to do this transfer from hybrid to entra ID AD joined , is this still the best way (other than wipe and load) given this video is over a year old ?
@unkownuser2320
@unkownuser2320 Ай бұрын
intune requires any on premise access drive mapping, printer access, vpn etc how to implement requires network connection configuration from on premise network to Azure network?
@strikesbac
@strikesbac Ай бұрын
If only it would run immediately after device setup and create the local account like Jamf Connect does.
@the_fatshark
@the_fatshark Ай бұрын
Does a user have to go through all those steps? Or can this all be silently configured? Second, is the process you showed the same if the device would be enrolled via ABM/DEP?
@theCMC
@theCMC Ай бұрын
Hi, there are a number of steps yes to register with Platform SSO and the actual number depends on the authentication method (Secure enclave, Password or smart card) you choose. My video has extra steps with enrolling the device using the company portal. These aren't needed naturally just for Platform SSO. There isn't a way to do all this silently at the moment and even with ADE and the first login experience you still need to register with Platform SSO. Have a look at the reference in the video description: learn.microsoft.com/en-us/entra/identity/devices/device-join-macos-platform-single-sign-on?tabs=password. On this website scroll down and choose the tab for the auth method you want and it shows you the experience. Hope this helps.
@the_fatshark
@the_fatshark Ай бұрын
@@theCMC Thanks for the video, your reply and your explanation! Hope it will be more ‘silent’ when it gets GA, because explaining all this to users… Well you get my point :)
@torreybolden
@torreybolden Ай бұрын
Can anyone assist me with this. I got an error during provisioning - drive.google.com/file/d/1wxp8w9M1FdEX4h7kTA35uvb8WRqq6Axd/view?usp=drive_link
@torreybolden
@torreybolden Ай бұрын
I received an error when it was attempting to provision. This is where I cannot proceed any further. Can anyone offer any assistance? drive.google.com/file/d/1wxp8w9M1FdEX4h7kTA35uvb8WRqq6Axd/view?usp=sharing
@MrSicky33
@MrSicky33 Ай бұрын
awesome video! thanks a lot. Is there anyway to remove a macbook from ABM / Intune and Azure AD (remove from organisation) but without wipe / reset the device?
@theCMC
@theCMC Ай бұрын
There are a few steps to follow - You can remove the device from Intune using company portal app if enabled, then delete the device from Intune, remove the device from the assigned device group in intune and then the assigned apple enrollment profile. Go into ABM and remove the specific device from the assigned Intune server then delete the device from ABM. You don need to wipe the device then. Please note if moving to another Intune tenant Apple and Microsoft recommend wiping the device first.
@stroopwafelvla1804
@stroopwafelvla1804 Ай бұрын
Did i do something wrong? I copied the exact same settings but as an end user I can still turn buttons on and off at updates. In addition, application updates and macOS updates are also on by default
@joefitzy
@joefitzy Ай бұрын
At 4:54 you say that it's important to "Assign your device to an MDM server before enrolling the device" but I don't know how to add a device to the MDM server.
@theCMC
@theCMC 22 күн бұрын
Joe take a look at episode 5. You need to have access to ABM to do this
@huseeinalsayed8238
@huseeinalsayed8238 Ай бұрын
Thank you, but what to do if my devices are already with users ??
@theCMC
@theCMC Ай бұрын
You need to be ordering devices through Apple or an Apple Authorised reseller who can add the devices to ABM. Where devices have already been sent you can ask them retrospectively if they have all the order numbers but again this needs to be via Apple or a reseller you purchased through. The last option is to use Apple Configurator 2 but you need to be physically with the device. See my other videos in the series for that.
@huseeinalsayed8238
@huseeinalsayed8238 Ай бұрын
@@theCMC thank you for your reply, But my issue is my users are developers and need admin permissions I am planning to use intune or ManageEngine MDM which one do you recommend And what I can do if the user with admin permissions remove the company portal Can I lock the device ??
@0xjoe
@0xjoe Ай бұрын
Hello again! OSDCloud is a game changer. I've had amazing results this past week while testing. I did run into an error however. Wondering if you can point in the right direction. I receive this error when booting into the ISO which I created in my workspace. Thank you! Get-CimInstance : Provider load failure At X:\Program Files\WindowsPowerShell\Modules\OSD\24.4.9.1\Public\OSDCloudTS\Initialize-OSDCloudStartnetUpdate.ps1:112 char:21 + ...$Win32TPM = Get-CimInstance -Namespace "ROOT\cimv2\Security\Microsoft... + CategoryInfo : NotSpecified: (ROOT\cimv2\Secu...ftTPM:Win32_TPM:String) [Get-CimInstance], CimException FullyQualifiedErroID : HRESULT 0x80041013,Microsoft.Management.Infrastrcuture.CimCMdlets.GetCimInstanceCommand TPM and Autopilot: NOT Supported.
@svause
@svause Ай бұрын
Would be quite useful if the video's creator comments were updated to show the URLs for the various screens in contemporary places - it's just not matching to the Azure layout in mid-2024.
@theCMC
@theCMC Ай бұрын
Agreed - the interface is now quite different. The concepts are the same, however. I can't update a video, only recreate - we're waiting for some expected updates to Autopilot to be released before we create the new version :-)