AMA: Cross-platform management with Microsoft Intune @WindowsAtWork
AMA: Cross-platform management with Microsoft Intune  @WindowsAtWork
Uploaded October 2025 | Updated September 2026, 1 hour ago
With Microsoft Intune, you can protect cloud-connected endpoints across Windows, Android, macOS, iOS, and Linux. Looking for tips to help you reduce costs and complexity by unifying the way you manage your endpoints? Have questions about mobile application management for unenrolled devices? Need to support a variety of device types for frontline workers? We’re here to help. Post your questions early and often. Our engineering teams will be here to help!

The live stream is over, but we're taking your questions on the Tech Community until Friday, October 10 so visit https://aka.ms/AMA/IntuneCrossPlat to keep posting your questions.

This Ask Microsoft Anything (AMA) is part of Tech Community Live: Microsoft Intune edition.

📃 For the full agenda, see: https://aka.ms/TCL/Intune
❓To see the full Q&A: https://aka.ms/AMA/IntuneCrossPlat

0:00 – Welcome & introductions

1:50 – Is there something on the roadmap to have the same container functionality on Windows devices, that is, the same protection offered for a BYOD Android and IOS, working on a Windows Device like Surface for example?

2:54 – Troubleshooting tips for macOS, how to check if the IntuneMDMAgent is causing high CPU usage a long time? Where are the lines in the logs telling that?

4:20 – Is there a way to force macOS to upgrade during are right after the enrollment to the targeted minor version so that the device is updated sooner?

5:33 – How can we migrate the management of MacOS devices from other platforms to Intune?

7:54 – For publishing internal apps to Android, are there any best practices?

9:24 – Is there a way that IT enroll the corporate macOS device and then the user that will use the device do the Platform SSO registration?

14:46 – Is it planned to have filters support for DDM policies, especially for update management for macOS?

17:12 – What kind of controls are available in Intune for OEM specific features, for Android devices?

18:28 – Is it now possible to block non-managed Apple IDs from logging into a supervised Mac device? Apple had previously announced that they would give us a solution on the MDM front that enables that.

20:35 – What’s the best way for an org to support platform SSO for a Mac using Secure Enclave keys in a multi-user environment and can we still offer software on demand (company portal I read isn’t supported for multi-user).

24:32 – Is there any way to sequence app installs for the MacOS? And / or, is there a way or roadmap for a script that is running on the Mac to call back to Intune to request an app be installed? This would be preferable to having to utilize Azure blob storage.
• To join the LinkedIn community for Mac, go to https://aka.ms/MacAdmins
• Visit the blog about Mac migrations at https://aka.ms/Intune/AppleMigrationOS26

31:29 – One major challenge of managing iOS devices in Intune is that using the company portal works fine, but handling both corporate and BYOD devices, especially with SSO, can be particularly tricky. Do you have any tips?

37:02 – Is it planned to have a way to set and forget minor update for MacOS devices? Right now we can only set a specific date, which means that we have to monitor those releases and then set/update our current policies with a new date.

38:58 – Can you share tips on building effective Android device restriction policies in Intune? Not just how, but what types are good to set?

41:32 – Using MAM-WE (without enrollment) with App Protection policies, is there a way to require Microsoft Defender to be not just installed but also have "Check for harmful links" enabled?

42:45 – Will device name template for macOS at some point be available outside supervised?

44:36 – Are there any plans to incorporate "sideloading" of Android apps particularly for Android Enterprise dedicated enrolled devices? There are a number of companies in the manufacturing and warehouse management space where leveraging a managed Google Play store methodology is either not available or flexible enough to support a controlled deployment strategy.

45:40 – Closing thoughts – final tips & tricks
AMA: Cross-platform management with Microsoft IntuneAMA: Getting the most from Security Copilot in IntuneDelivering like-local Windows experiences from the cloud – Microsoft Technical TakeoffResilience for the modern era: Windows quick machine recoveryDécouverte de Application Control for Business (aka WDAC)AMA: Windows AutopilotSecure-by-default with Windows 11: why wait? - Tackling TechSecure helpdesk support using Intune Remote Help – Microsoft Technical TakeoffEnhancing resiliency with Windows 365 – Microsoft Technical TakeoffThe evolution of Windows in the cloud - Tackling TechWhat is Windows 365 ReserveWindows 365 Frontline expands with Cloud Apps and more
Windows At Work |

AMA: Cross-platform management with Microsoft Intune

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER