Managing macOS devices using Microsoft Intune
121 questions with Microsoft Security | Intune | Microsoft Intune MacOs tags
macOS devices in Intune
Hi all, I am experiencing an issue with macOS devices managed via Microsoft Intune where the FileVault policy reports error code 9681. The error message shown is: "The VPN Service payload could not be installed. The VPN service could not be…
Microsoft Security | Intune | Microsoft Intune MacOs
I would like to clarify the behavior of Platform SSO (PSSO) registration on macOS devices.
We currently have Macs enrolled using Automated Device Enrollment (ADE) with Platform SSO and LAPS for Mac configured via Intune. In our scenario: A first user (e.g., admin account) signs in to the device and completes PSSO registration…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
Universal Printers not populating when using Mac
Universal printers deployed in Entra are not showing on Universal Print app on Mac devices. Users are assigned to printer shares group and signed into M365 account on the app as well. Trying to troubleshoot how to get Universal printers to show using…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
Issue with MacOS Direct Enrollment in Intune
Hi All, I am trying to set up Direct Enrollment for Mac OS devices through Intune following the documentation at : https://learn.microsoft.com/en-us/intune/intune-service/enrollment/device-enrollment-direct-enroll-macos?source=docs In my tenant though I…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
Issue with Intune macOS app (DMG) updates
Hello, We observed an odd behavior when updating macOS app (DMG) in Intune - the new versions install inside the existing app bundle instead of replacing it. The update reports as successful, but the application ends up nested inside the existing…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
macOS - Company Portal not "Managed" issue (Auto-Solved)
Dears, In the company we have ABM, on ABM I assigned the device as managed by Intune. Subsequently on intune we created an enrollment profile with User affinity and Setup Assistant with modern authentication. We associate the new profile with the serial…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
Microsoft Teams MacOS Screensharing Permission .mobileconfig
We deploy a .mobileconfig file (attached) as a custom configuration profile via Intune to our MacOS (macOS 15.3) devices to set the required privacy settings for Teams Screensharing. We set AllowStandardUserToSetSystemService that a user can enable the…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
Microsoft Teams | Microsoft Teams for business | Other
Additional features, settings, or issues not covered by specific Microsoft Teams categories
Issue with Multiple Accounts on macOS Using User Affinity and PSSO
Hello everyone, I’m not sure if this is the best place to ask, but I really need some guidance. Brief Explanation I’m facing a problem when using multiple accounts on macOS with User Affinity and Platform SSO (PSSO) implemented. Context In the…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
MacBook Pro does not lock when screen is closed when configured to be managed by intune
We are encountering a serious security issue, whereby our Macbook air and pro devices do not lock when configured to me managed by Intune. Initially I thought this was an Apple issue, but after a very very long discussions with Apple Support and posting…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
Microsoft 365 Apps for macOS installation fails
Hello! I'm facing issues with installing Microsoft 365 Apps for macOS (macOS Office Suite app type) on macOS clients. OneDrive and Microsoft Teams are already installed, as these apps are distributed to all users, while Microsoft 365 Apps are assigned…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
Allowing mac users to change their timezone
Hi All, Because Location services are not allowed for macs (i think): Sometimes macs don't get the correct timezone. I had created a plist as below and successful updated the policy to the target device. But when check on the device, the profile not…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
How to stop Mac Mini from prompting for keychain on SSO login
A new Mac Mini has been enrolled into Intune via company portal app, and secured with SSO. The user signs in with their M365 credentials. We have 10 new Mac mini's all working OK this way. However, one user has somehow triggered the Mac to prompt for the…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
How do you successfully create policy to allow USB read-only access in MacOS while having the policy that blocking it
We have a policy that block USB access for all MacOS devices. But recently one user requested to have access to her usb hard drive. Therefore i have tried to created a policy in intune to allow USB read-only access. I excluded the targeted device…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
Can't log to Desktop after Platform SSO has been applied
I don't have Apple Business Manager but I've been told, login to MacOS with Entra credentials should be possible. I start up fresh MacOS, register new local account, install Company Portal, register the entra user account with CP, perform device…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
[macOS] How to install Azure VPN Client without AppStore
Hi, I cannot find the way to manually install Azure VPN Client to macOS. The company policy blocks AppStore access and manages device via Intune. I have to install Azure VPN Client to work on Azure Resource POC. Please advise.
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
macOS Settings Catalog - User Experience - Dock - Persistent Apps
I have been trying to use the Settings Catalog instead of a custom profile to configure the items in the dock on devices. The profile delivers ok though the payloads for persistent/static apps don't appear on the device. I have tried several combinations…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
Microsoft Security | Intune | Other
Other Intune-related topics, including unsupported scenarios and platform-specific behaviors
Is there a way to remove admin rights from mac devices using intune?
Hello all, I was wondering if there is a way to remove admin rights from mac users's devices enrolled in our intune, I know there is no function to do so but is there a script i can push with intune agent? Thank you
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
Microsoft Security | Intune | Other
Other Intune-related topics, including unsupported scenarios and platform-specific behaviors
Where are IntuneMDMAgent*.log files on MacOS 15?
I'm troubleshooting some Intune configuration profiles on MacOS 15. I expect to find IntuneMDMAgent date--time.log files in ~/Library/Logs/Microsoft/Intune, but the folder is missing. The Microsoft Intune Agent.app is installed and running according to…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
Pushing Wi-Fi Profile with EAP-TLS to Macbooks from Intune
Hi, I've been working on pushing EAP-TLS Wi-Fi profile settings to our MacBooks to enable 802.1X certificate-based authentication. However, the profiles are not being successfully deployed to the devices. Note: All MacBooks are not domain-joined, but…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune
MAC enrolment stuck at waiting for management server
When enrolling a mac device, which is our test device, to intune after wiping from intune and ASM, it got stuck at Waiting for Management Server on Remote Management page. Similar issue as below…
Microsoft Security | Intune | Microsoft Intune MacOs
Managing macOS devices using Microsoft Intune