joeloveless.com
@joeloveless.com
Sr. Endpoint Configuration Engineer. #microsoft #intune #configmgr. Indiana to Minnesota. #pacers #colts #twins #wild
Reposted
*Intune Community Tools 2025 Edition by #SCDudes*

< Intune Policy Comparison >
Compare your #MSIntune configuration policies to Microsoft Security Baselines with ease. Quickly spot differences and bring your policy set into alignment
www.systemcenterdudes.com/intune-commu...
November 13, 2025 at 8:15 PM
Reposted
#Intune network requirements page got a huge update! There is now a consolidated list for the network endpoints. Rejoice!
However, it's still not fully complete 😭 But updating _that_ list should be much easier than the JSON 😊.

learn.microsoft.com/intune/intun...
Network endpoints for Microsoft Intune - Microsoft Intune
Review endpoints for Intune. This page lists IP addresses and port settings needed for proxy settings in your Intune deployments.
learn.microsoft.com
November 13, 2025 at 6:04 PM
Somehow despite promises, #intune can be even more complex than on-prem.

Settings Catalog:
Writes to different registry locations. (sometimes)
Not all settings from GP are supported.
The ones that are supported, not all of them are supported for AVD multi-session hosts.

1/
November 12, 2025 at 10:30 PM
November 12, 2025 at 2:23 AM
Trying to explore other topics outside of Microsoft. Another post about #homeassistant, and trying to be organized a little bit more.

joeloveless.com/2025/11/trac...
Tracking Chores with Home Assistant
How I use Home Assistant to keep track of chores.
joeloveless.com
November 11, 2025 at 8:24 PM
I was starting to get worried. Congrats on the marriage and honey moon @fabianrodriguez.bsky.social
🎙️ Just published a new episode of Diary Of A SysAdmin: From Help Desk to IT Leadership: Andrew Johnson's Journey. Have a listen:
From Help Desk to IT Leadership: Andrew Johnson's Journey
Andrew Johnson shares his journey in the IT field, starting from his...
share.transistor.fm
November 11, 2025 at 12:19 AM
MMS is such a valuable conference and so much is gained by random talks and questions asked.
The tech community is missing out on a lot
November 9, 2025 at 8:09 PM
Reposted
📰 I’ve deployed Windows Shared PCs at multiple customers lately, so I wrote down everything that works.

I cover OneDrive, WHfB, PDE, GSA, licensing + pratical tips from the field.

Read it 👉 burgerhou.tj/gj4qtn

#MSIntune #MVP #MVPBuzz #SharedPC #Windows11
Mastering Windows Shared PCs with Microsoft Intune
Shared PCs are a perfect fit for frontline, education, or shift-based environments — where devices are used by multiple users throughout the day. But managing them right requires the right balance bet...
burgerhou.tj
November 7, 2025 at 10:48 AM
Reposted
Windows Autopatch for the US government: How to get started: The power of automated Windows update management is coming to government SKUs! Starting this month, you can use Windows Autopatch to help keep devices at your organization secure and productive with minimal disruption to… #WindowsITPro
Windows Autopatch for the US government: How to get started
The power of automated Windows update management is coming to government SKUs! Starting this month, you can use Windows Autopatch to help keep devices at your organization secure and productive with minimal disruption to users. This cloud-based service that has a proven record with enterprises has now been approved to be added to the Azure FedRAMP High Provisional Authorization to Operate (P-ATO). Learn what this means for your environment and how to get started! New Windows Autopatch service for GCC subscriptions Windows Autopatch is now available to US government organizations as part of Microsoft 365 Government. This is what Windows Autopatch allows you to accomplish for your Government Community Cloud (GCC) devices: * Windows Autopatch provides control over which content is approved for deployment to which devices through Windows Update. * Windows Autopatch groups help you automate a safe rollout process. You can distribute devices into rings and recommend release schedules, leaving you with the final say. * Get secure faster with hotpatching: apply security patches without waiting for a restart. * Pause or expedite monthly quality updates or drivers for groups of devices in your environment. * Simplify update compliance reporting. Windows Autopatch reporting tracks which devices have the latest updates installed with less than 4-hour latency. * Manage policy and see reporting through the Microsoft Intune admin center. Get started with Windows Autopatch To begin, double-check that your devices meet the prerequisites for Windows Autopatch. Configure role-based access control to manage access to your organization’s resources and network. If you’re using Microsoft Intune, the easiest way to automate your update process is to create one or more Windows Autopatch groups: * Go to the Microsoft Intune admin center. * In the left pane, select Tenant administration and then navigate to Windows Autopatch > Autopatch groups. * Create a Windows Autopatch group and assign devices, automating a few things: * Distribute devices for gradual rollout into a set of Microsoft Entra groups. * Configure a safe rollout schedule using update rings. * (Optional) Configure content approval using feature and driver update policies. * (Optional) Configure update settings for Microsoft 365 Apps and Microsoft Edge. * Enroll devices to receive hotpatch updates, getting them secure faster. * That’s it! Just monitor the reports to ensure that you’re hitting your update compliance targets. Instead of Windows Autopatch groups, you can also create individual policies: * Update rings: Control update settings on targeted endpoints. * Windows quality updates: Configure your device to receive hotpatch updates. * Expedited quality updates: Deploy a specific quality update more quickly. * Windows feature updates: Choose the version of Windows approved for deployment for a group of devices. * Driver and firmware updates: Control which drivers are approved for deployment for a group of devices. Regardless of which setup option you choose, if your device is included in a policy, it will show up in the reports for that content type. What about other Azure Government Cloud offerings? Windows Autopatch is not currently supported in US Government Community Cloud High (GCC High) or Department of Defense (DoD) environments. We are working on expanding our service to meet those requirements. Welcome to automated update management! Come be part of the Windows Autopatch community! Here are the resources you’ll need to get started and get support: * Windows Autopatch documentation * Windows Autopatch on the Windows IT Pro Blog * Windows Autopatch: Your playbook for advanced update management * Inside hotpatch updates for Windows * Hotpatch for client: Frequently asked questions --- Continue the conversation. Find best practices. Bookmark the Windows Tech Community, then follow us @MSWindowsITPro on X and on LinkedIn. Looking for support? Visit Windows on Microsoft Q&A.
bit.ly
November 7, 2025 at 5:05 PM
Reposted
What happens when #MMSMusicCity meets #MSIntune, AI meets automation, and your #patching strategy gets a Copilot upgrade?

Catch our recap from @mmsmoa.bsky.social and @wpninjasummit.bsky.social packed with insights for any #ITPro. #PatchMyPC

▶️ www.youtube.com/watch?v=8SPf...
MMS + Workplace Ninjas Round-Up | Real World Lessons Webinar
YouTube video by Patch My PC
www.youtube.com
November 7, 2025 at 11:33 PM
Reposted
Lately, I've been focusing on #Android management in #MSIntune. In this blog post, I will take you through the new possibilities within Android Management with Microsoft Intune service release 2510. ✍🏻 #blogpost
What’s New for Android in Microsoft Intune 2510: October 2025 Highlights
Microsoft Intune’s October 2025 (2510) release brings a wave of enhancements for Android device management, making it easier than ever for IT admins to fine-tune policies, improve enrollment workflows...
www.nickydewestelinck.be
October 28, 2025 at 12:09 PM
Kill Mico. Give me Clippy full time.
October 23, 2025 at 10:30 PM
While the FBI is investigating the NBA, can someone look into Scott Foster and Game 4 of the Finals. Probably some big money movement on that screw job. #Pacers
October 23, 2025 at 5:43 PM
My proposal:

Remove anything that says Do not allow/Disable/Enable from the setting name.
New setting name example: "Storage of Passwords and Credentials for Network Authentication"
New value example: "Enabled/Disabled/Not Configured"

1/2
#intune #microsoft
October 22, 2025 at 9:08 PM
@jeskeets.bsky.social @nodunksinc.bsky.social Has the No Dunks squad watched this Camp Cretaceous Jurrassic Park show on Netflix? Parents send their kids to summer camp on Isle Nebular? All those parents have to jump up to #1 on the worst parents list, right?
October 22, 2025 at 11:54 AM
Reposted
At #MMSMOA I kept seeing folks using client IDs and secrets in their #GitHub Actions workflows for #MSGraph.

I'm not an authentication expert, but I know enough to be paranoid.

There's a better way: OIDC federated credentials. Think of it like a system-managed identity, but for GitHub Actions.
October 20, 2025 at 7:37 PM
It would be cool to be able to manage VS Code settings in #intune like you can Group Policy. #modern
October 18, 2025 at 9:22 PM
Thanks Google
October 18, 2025 at 9:16 PM
Reposted
Your browser is the new attack surface.

Every tab and every “trusted” extension is a potential entry point.

In our latest webinar, we uncover how browser chaos happens and how to stop it.

Watch the replay ➡️ https://bit.ly/4hgSzAW

#BrowserSecurity #Intune #AdvancedInsights #PatchMyPC
October 14, 2025 at 9:51 PM
I was an intern in high school doing XP lab upgrades with Ghost floppies. Got my first real job during Windows 7. Got my first CM job around Windows 10 1511. I RIP Windows 10.
a man with a beard and a hat is looking at the camera .
ALT: a man with a beard and a hat is looking at the camera .
media.tenor.com
October 14, 2025 at 11:37 AM
Ever wonder why settings are available in the legacy Group Policy, but aren't in the #Intune settings catalog? I wrote a couple of scripts to help gather that data, looping through ADMX files, and then finding corresponding Intune settings (if available).

joeloveless.com/2025/10/what...
What Group Policy Settings aren't in Microsoft Intune?
Finding settings that are in Group Policy, but aren't in Intune.
joeloveless.com
October 11, 2025 at 11:57 PM
October 10, 2025 at 3:35 AM
Ummm....what? How does that happen? #intune
October 9, 2025 at 12:01 AM
@jay.bsky.team @danabra.mov seems like @atproto.com is crumbling.
I’m sorry @bsky.app what happened to decentralization & composable moderation & being able to take your data & accounts with you?

Bc it looks like y’all just nuked an important poster who provides commentary on many topics but notably 🔭🛰️🧪.

Free @spacelawshitpost.me!
Update from Link. He said he still is banned despite being under BlackSky PDS cause BlueSky servers still used? :( idk

Just sharing what I’m told.
October 5, 2025 at 6:17 PM