Microsoft Intune Questions

Download as docx, pdf, or txt
Download as docx, pdf, or txt
You are on page 1of 5

1. What is Microsoft Intune?

Microsoft Intune is the SaaS solution provided by Microsoft. Microsoft Intune is a cloud-based
solution for managing desktop and mobile device management tools.

Microsoft Intune is previously known as Windows Intune. It’s part of Microsoft’s Unified Endpoint
Management (UEM) solution.

This cloud solution is used as a modern management tool. This Mobile Device Management(MDM)
solution can be integrated with SCCM, Azure AD, and Active Directory.

Intune allows people in your organization to use their personal devices through Access to Work or
School. Intune to protect your organizational data and isolate organizational data from personal
data.

1. What are the benefits of Using Intune?

The tighter integration with the existing Microsoft ecosystem is one of the top benefits of Intune.
There are many advantages of using Intune, and some of the benefits of using Intune are as follows:

1. Deploy apps and Security policies and more.


2. It helps in checking if apps and devices meet security standards.
3. Control how people access and share data to keep the company’s data safe.
4. It keeps data safe by adhering to the administrator’s device registration and compliance
requirements.

1. What are the Intune Architecture and Design Decisions?


The answer to this Intune Interview question is going a bit tricky. So be careful before answering
this question. Let me explain how this question can be handled.

Intune has a server and client architecture like most device management solutions. Intune Service is
the server side of the solution. The Client-side has two parts.

1. Windows MDM Client (built-in to OS)


2. Intune Management Extension (IME) agent

Intune (cloud) Architecture and Design decisions are much different from the on-prem device
management solutions like SCCM. Intune architecture and design decisions should be from the SaaS
solution point of view.

1. No need to take any decisions on Intune server placement and architecture for core Intune infra
components. This is already taken care of by Microsoft. They have servers in each region and Azure
Datacenters.

2. Architecture decisions must be taken on network connectivity to Intune services from on-prem
and the internet. For instance – Endpoint devices connecting from on-prem network to cloud,
Admins connecting from On-prem network to Intune services.

Organizations might require a special enrollment network just to enroll the new and existing devices
into Intune management using Windows Autopilot/ADE.

3. Design Decisions must be made on supported enrollment scenarios for the organization. For
example: Whether you want to support Apple ADE, Android Device Admin, or Windows Autopilot
types of enrollments only?

4. Design Decisions on Applications, Policies, Windows Updates, 3rd Party App updates, and
Certificate deployment strategies using Intune. Packaging (MSIX) and repackaging (IntuneWin)
strategies, etc.

5. The content distribution strategies with Delivery Optimization(aka DO) for on-prem and home
network scenarios. Also, define the device management life cycle with Intune.

6. Attaching Intune with existing ecosystems, such as ServiceNow, SCCM, etc., is also a key design
decision. More on this Architecture Decision Making Guide for 2022 or Later.

1. What types of devices can be managed with Intune?


The list of device platforms with Intune support is increasing day by day. The types
of device platforms which can be enrolled are as follows:

1. Windows
2. Android
3. iOS/iPadOS
4. macOS
5. Linux

NOTE! – I don’t think Intune can simultaneously be an expert in all the device
platforms. Hence concentrate on one of the platforms during Intune interviews and
tell the interviewer honestly about this.

1. Where can you check Intune Version Details?

You can check the Intune version details from the Intune(aka Intune admin) portal.

You can login to the Intune Portal-> Tenant Administration -> check for the Service
Release number.

The Intune version or Service Release number is in YYMM format. The latest version
while writing this post is 2207.

1. What is Windows Auto Enrollment?


You can configure a policy in Intune to automatically enroll the Windows devices
into Intune management when they join or register with Azure Active Directory.

This is a common solution/service Azure AD provides for all MDM providers (Intune,
Airwatch, etc.). The auto-enrollment helps to manage enterprise data on your
employees’ Windows devices.

1. What are the Remote Assistance options available for


Intune Managed devices?

Some Remote Assistance options are available within the Intune


Admin center portal. The Microsoft solution to remote assistance is
called Remote Help. This comes with tight integration with Intune
and Azure AD, etc.

Remote Help is not part of Intune service or Intune license, but there
is an additional licensing requirement for the Remote Help solution.

TeamViewer is another remote assistance solution integrated into


the Intune portal. There is an additional license required for this
remote assistance solution as well.

You might also like