You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: memdocs/intune/fundamentals/in-development.md
+78-11Lines changed: 78 additions & 11 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -7,7 +7,7 @@ keywords:
7
7
author: dougeby
8
8
ms.author: dougeby
9
9
manager: dougeby
10
-
ms.date: 09/25/2024
10
+
ms.date: 10/01/2024
11
11
ms.topic: conceptual
12
12
ms.service: microsoft-intune
13
13
ms.subservice: fundamentals
@@ -77,6 +77,19 @@ EPM is available as an [Intune Suite add-on-capability](../fundamentals/intune-a
77
77
78
78
## App management
79
79
80
+
### Updates to app configuration policies for Android Enterprise devices<!-- 26711672 -->
81
+
82
+
App configuration policies for Android Enterprise devices will soon support overriding the following additional permissions:
83
+
84
+
- Access background location
85
+
- Bluetooth (connect)
86
+
87
+
For more information about app configuration policies for Android Enterprise devices, see [Add app configuration policies for managed Android Enterprise devices](../apps/app-configuration-policies-use-android.md).
88
+
89
+
Applies to:
90
+
91
+
- Android Enterprise devices
92
+
80
93
### New UI for Intune Company Portal app for Windows<!-- 27219294 -->
81
94
82
95
The UI for the Intune Company Portal app for Windows will be updated. Users will be able to use the same functionality they’re used to with an improved experience for their desktop app. With the updated design, users will see improvements in user experience for the **Home**, **Devices**, and **Downloads & updates** pages. The new design will be more intuitive and will highlight areas where users need to take action.
### Consent prompt update for remote log collection<!-- 28072852 -->
99
-
100
-
End users might see a different consent experience for remote log collection after the Android APP SDK 10.4.0 and iOS APP SDK 19.6.0 updates. End users will no longer see a common prompt from Intune and will only see a prompt from the application if it has one.
### Minimum OS version for Android devices will be Android 10 and later for user-based management methods<!-- 14755802 -->
141
+
142
+
From October 2024, the minimum OS supported for Android devices will be Android 10 and later for user-based management methods, which includes:
143
+
144
+
- Android Enterprise personally-owned work profile
145
+
- Android Enterprise corporate owned work profile
146
+
- Android Enterprise fully managed
147
+
- Android Open Source Project (AOSP) user-based
148
+
- Android device administrator
149
+
- App protection policies (APP)
150
+
- App configuration policies (ACP) for managed apps
151
+
152
+
For enrolled devices on unsupported OS versions (Android 9 and lower)
153
+
154
+
- Intune technical support won't be provided.
155
+
- Intune won't make changes to address bugs or issues.
156
+
- New and existing features aren't guaranteed to work.
157
+
158
+
While Intune won't prevent enrollment or management of devices on unsupported Android OS versions, functionality isn't guaranteed, and use isn't recommended.
159
+
160
+
Userless methods of Android device management (Dedicated and AOSP userless) and Microsoft Teams certified Android devices won't be affected by this change.
161
+
162
+
### Device Inventory for Windows<!-- 24853010 -->
163
+
164
+
Device inventory lets you collect and view additional hardware properties from your managed devices to help you better understand the state of your devices and make business decisions.
165
+
166
+
You'll soon be able to choose what you want to collect from your devices, using the catalog of properties and then view the collected properties in the Resource Explorer view.
167
+
168
+
Applies to:
169
+
170
+
- Windows (Corporate owned devices managed by Intune)
171
+
172
+
### Collection of additional device inventory details<!-- 29460196 -->
173
+
174
+
We're adding additional files and registry keys to be collected to assist in troubleshooting the Device Hardware Inventory feature.
### New strong mapping requirements for Intune-issued SCEP certificates<!-- 29005591 -->
185
+
186
+
To align with the Windows Kerberos Distribution Center's (KDC) strong mapping attribute requirements described in [KB5014754](https://support.microsoft.com/help/5014754), SCEP certificates issued by Microsoft Intune will be required to have the following tag in the Subject Alternative Name (SAN) field:
187
+
188
+
`URL=tag:microsoft.com,2022-09-14:sid:<value>`
189
+
190
+
This tag will ensure that certificates are compliant with the KDC's latest requirements, and that certificate-based authentication continues working. Microsoft Intune will be adding support for the SID variable in SCEP profiles. You will be able to modify or create a new SCEP profile to include the OnPremisesSecurityIdentifier variable in the SCEP profile. This action will trigger Microsoft Intune to issue new certificates with the appropriate tag to all applicable users and devices.
191
+
192
+
These requirements apply to:
193
+
194
+
- Android, iOS/iPadOS, and macOS user certificates.
195
+
- Windows 10/11 user and device certificates.
196
+
197
+
They don't apply to device certificates used with Microsoft Entra joined users or devices, because SID is an on-premises identifier.
0 commit comments